Graal Forums  

Go Back   Graal Forums > PlayerWorlds > PlayerWorlds Main Forum
FAQ Members List Calendar Today's Posts

Closed Thread
 
Thread Tools Search this Thread Display Modes
  #1  
Old 12-18-2004, 01:14 AM
Spark910 Spark910 is offline
Ex-Graal Global
Spark910's Avatar
Join Date: Oct 2001
Location: England
Posts: 10,892
Spark910 has a spectacular aura about
Playerworld Security Report (Winter '04) *Please Read*

Last report: [Click Here]

Here it is again, some stats on how many insecure RCs were in the staff= serveroptions on the Graal playerworlds, until they were removed.

Like last time I've been server hoping and removing those bad RCs with an IP range of *.*.*.*. Since the last time I have seen a considerable decrease in the amount of bad doings on playerworlds, due to a general increase in security of playerworlds - preventing some attacks.

There is, however, room for improvement as always. It's good to see it has improved though, and the same amount of servers are basically online, so it's easy to compare last times data to this. So on with the stats and graphs!

.:THE STATS:.

1. How many RCs had an IP range of *.*.*.*?
170RCs had an IP range of *.*.*.* compared to 339RCs last time.
This is a good decrease, and hopefully next time it would be nice to see it lower than 100 RCs, as it should be very low as there is no real reason to allow an insecure RC into staff= and leave it there.

2. How many playerworlds were 100% Secure?
By secure, I mean all RCs in staff= had an IP range set.



This is a good increase, however it should be alot more. I am happy to see that most servers had only 1/2 insecure RCs and that it's a few playerworlds that let down the amount of insecure RCs with practically all of them insecure.

3. What level RCs were in the staff= server option with an IP of *.*.*.*?
Number of level4s: 57/170 (33%)
Number of level3s: 26/170 (15%)
Number of level2s: 15/170 (9%)
Number of level1s: 44/170 (26%)
Number of level0s: 28/170 (17%)

Below is a graph to show the general decrease in all the insecure RCs over all the RC levels:


4. Which playerworlds were 100% secure?
Classic playerworlds 100% Secure: 6/9 (66% -30% last time)
Hosted playerworlds 100% Secure: 2/8 (25% - 30% last time)
Other playerworlds 100% Secure: 32/82 (39% - 21% last time)

.:THE POINT:.
Okay, enough with the graphics and stats on with the points:

Odd Points:
  • NO RC should have an IP range of *.*.*.*
  • IP ranges should be checked every so many months, to make sure they are all set
If your a manager:
  • Make sure you check the Admin-Playerworld accounts IP range, because this doesn't need to be in staff=, so you may forget it.
  • Never add anyone to the staff= serveroption without an IP range, make them give you the IP range first.
  • Don't give high rights to new staff.
  • Give staff only the rights they need
If your a staff member:
  • Check your IP range is always set
  • Remind the Manager/Admin to set your IP when they add your RC

Punishments:
1) Those with big RC levels on player accounts, in the Hosted tab, have been removed for up-to 10days.
2) Those with lots of insecure RCs this time, as well as last time will later have their playerworlds disabled for a week.

How to set an IP range: [Click Here]

Thank you.
__________________
--Spark911
  #2  
Old 12-18-2004, 01:19 AM
The Evil Within The Evil Within is offline
I'm Not Chance...Really
The Evil Within's Avatar
Join Date: Aug 2004
Location: Coral Springs, Florida
Posts: 65
The Evil Within is on a distinguished road
Send a message via AIM to The Evil Within
Wow, you spent a lot of time on that didn't you...
__________________
-CMercy

Delteria Forums
  #3  
Old 12-18-2004, 01:51 AM
Doahh_p2p Doahh_p2p is offline
Developer
Join Date: Oct 2004
Posts: 187
Doahh_p2p will become famous soon enough
Quote:
Originally Posted by The Evil Within
Wow, you spent a lot of time on that didn't you...
He probably likes Excel
  #4  
Old 12-18-2004, 02:15 AM
Okilian Okilian is offline
married to Okilian
Join Date: Apr 2002
Location: Ohio
Posts: 183
Okilian will become famous soon enough
Send a message via AIM to Okilian
u going to say which playerworlds were secure, which weren't?
__________________
  #5  
Old 12-18-2004, 02:18 AM
Spark910 Spark910 is offline
Ex-Graal Global
Spark910's Avatar
Join Date: Oct 2001
Location: England
Posts: 10,892
Spark910 has a spectacular aura about
Quote:
Originally Posted by Okilian
u going to say which playerworlds were secure, which weren't?
lol, I don't think saying which weren't would be so wise. But i'll list those that were later on. Stefan is going to add something that wont allow *.*.*.* anymore, so once that is done i'll say which were secure.

But I won't advertise servers, incase people just add them back without IPs again

Will talk to robert about rewarding those that were secure this time, and were last time too. No real reward can be given to classic, but maybe I can get the control panels finally added
__________________
--Spark911
  #6  
Old 12-18-2004, 02:44 AM
Slash-P2P Slash-P2P is offline
Banned
Join Date: May 2004
Location: Burning Blade
Posts: 941
Slash-P2P is on a distinguished road
Spark, you logged on my server and disabled one of my staff's accounts while I was about to change their IP.
  #7  
Old 12-18-2004, 02:56 AM
Spark910 Spark910 is offline
Ex-Graal Global
Spark910's Avatar
Join Date: Oct 2001
Location: England
Posts: 10,892
Spark910 has a spectacular aura about
Quote:
Originally Posted by Slash-P2P
Spark, you logged on my server and disabled one of my staff's accounts while I was about to change their IP.
Bad timing I guess
__________________
--Spark911
  #8  
Old 12-18-2004, 09:40 AM
haro41 haro41 is offline
zenkou
haro41's Avatar
Join Date: Jul 2003
Location: Sol Grotto
Posts: 689
haro41 will become famous soon enough
Send a message via AIM to haro41
how many RC's are there total? and can you make a Pie chart of Arkland Empires RC's to total Graal RC's. id like to see that one lol.
__________________

Zenkou for life
  #9  
Old 12-18-2004, 06:00 PM
anim8999 anim8999 is offline
Banned
Join Date: Aug 2004
Posts: 28
anim8999 is on a distinguished road
What exactly is wrong with an IP range of *.*.*.*? You people seem to make a big deal over it. People buy a server, let them run it the way they want to run it. It is their fault if it gets hacked.

Spark, if you going to remove people from rc who has an ip range like that, then why don't you just manage my server? You seem to of made yourself a "Global Manager" ... "Global Owner" in some cases.
  #10  
Old 12-18-2004, 06:02 PM
Spark910 Spark910 is offline
Ex-Graal Global
Spark910's Avatar
Join Date: Oct 2001
Location: England
Posts: 10,892
Spark910 has a spectacular aura about
Quote:
Originally Posted by anim8999
What exactly is wrong with an IP range of *.*.*.*? You people seem to make a big deal over it. People buy a server, let them run it the way they want to run it. It is their fault if it gets hacked.
Its a waste of our time when we have to run around and get backups, restore it to the owner, clear up all the crap left behind by an attack etc...

When it could not happen at all. Eitherway it will be stopped fully in a week or two, as you wont be able to set, or log on with an RC with a range of *.*.*.*
__________________
--Spark911
  #11  
Old 12-18-2004, 06:19 PM
NicoX NicoX is offline
Kingdoms Management
NicoX's Avatar
Join Date: Mar 2004
Location: Frankfurt/Main, Germany
Posts: 1,933
NicoX will become famous soon enough
Send a message via AIM to NicoX Send a message via MSN to NicoX
lol nice graphics spark xD
some highstaff deleted the ip range of one of my staffs donno why, i warned him x-x now we are off hosted lol whatever xD
__________________
Yours Sincerely,

-Nico
(GK Management)

Clash: Nico, I'm going to give you an example of good management.
Clash: One of my staff removed my RC and banned me.
Clash: I didn't ban or remove their RC after I got another one to fix me.
Clash: Do you know why?
Björn: Because you IP banned him ?

Stefan logged on.
(npcserver) has reset the attributes of Stefan
*Stefan: ah my client crashed








  #12  
Old 12-18-2004, 10:21 PM
Nappa Nappa is offline
The Great Nappa
Nappa's Avatar
Join Date: Sep 2003
Location: Florida
Posts: 1,911
Nappa is on a distinguished road
Send a message via AIM to Nappa
Wow - Instead of "Wasting your time", just draw up a new agreement by the buyer that all takeovers of a server is their fault and nothing will be backed up to them if something happens due to a bad IP range. If the server is "hacked" just whipe all the data from the server and give rights back only to the adminplayerworld account thingy.
__________________
  #13  
Old 12-18-2004, 10:47 PM
Slash-P2P Slash-P2P is offline
Banned
Join Date: May 2004
Location: Burning Blade
Posts: 941
Slash-P2P is on a distinguished road
It's hard to be secure when the password changer is broken...

Quote:
Originally Posted by Spark910
Bad timing I guess
Yup.
  #14  
Old 12-18-2004, 11:10 PM
Spark910 Spark910 is offline
Ex-Graal Global
Spark910's Avatar
Join Date: Oct 2001
Location: England
Posts: 10,892
Spark910 has a spectacular aura about
Quote:
Originally Posted by Nappa
Wow - Instead of "Wasting your time", just draw up a new agreement by the buyer that all takeovers of a server is their fault and nothing will be backed up to them if something happens due to a bad IP range. If the server is "hacked" just whipe all the data from the server and give rights back only to the adminplayerworld account thingy.
Clearly removing loads of insecure RCs, clearly showing a decrease in playerworld attacks since it was first done, clearly showing that more people are setting the ranges, clearly showing less people are giving level4s away isn't a waste of time.

And no, if you read the post you'd clearly understand that I have got Stefan to now not allow *.*.*.* anymore, which is clearly more secure and useful than any clear agreement that could be written that people would clearly not follow.
__________________
--Spark911
  #15  
Old 12-19-2004, 12:32 AM
Nitkizi Nitkizi is offline
Nil Recurring
Nitkizi's Avatar
Join Date: Jun 2002
Posts: 1,911
Nitkizi is on a distinguished road
Send a message via AIM to Nitkizi
Quote:
Originally Posted by Spark910
When it could not happen at all. Eitherway it will be stopped fully in a week or two, as you wont be able to set, or log on with an RC with a range of *.*.*.*
<3
__________________
I got wiring loose inside my head
I got books that I never ever read
I got secrets in my garden shed
I got a scar where all my urges bled
I got people underneath my bed
I got a place where all my dreams are dead
Swim with me into your blackest eyes
  #16  
Old 12-19-2004, 07:15 AM
haro41 haro41 is offline
zenkou
haro41's Avatar
Join Date: Jul 2003
Location: Sol Grotto
Posts: 689
haro41 will become famous soon enough
Send a message via AIM to haro41
and in the event that a server gets taken over, it an be publicly viewed and, depending on what the hackers do, there could be some illegal content or worse...SWEAR WORDS MADE OUT OF TILES!!! *GASP!!!!* it just makes Graal Online look bad.
__________________

Zenkou for life
  #17  
Old 12-28-2004, 01:11 AM
Projectshifter Projectshifter is offline
The David
Projectshifter's Avatar
Join Date: Apr 2002
Location: USA
Posts: 912
Projectshifter is an unknown quantity at this point
Send a message via ICQ to Projectshifter Send a message via AIM to Projectshifter Send a message via MSN to Projectshifter Send a message via Yahoo to Projectshifter
Quote:
Originally Posted by anim8999
What exactly is wrong with an IP range of *.*.*.*? You people seem to make a big deal over it. People buy a server, let them run it the way they want to run it. It is their fault if it gets hacked.

Spark, if you going to remove people from rc who has an ip range like that, then why don't you just manage my server? You seem to of made yourself a "Global Manager" ... "Global Owner" in some cases.
Spark is the Global Playerworld Admin, so yeah, that is part of his job security. And the big deal is when these servers get hit they take out sometimes the ones on the computer with them. So just because one idiot manager didn't set an IP or two, you think then the rest of the servers on that computer should suffer? Nah, didn't think so.
__________________
Who has time for life these days?
  #18  
Old 12-28-2004, 01:19 AM
Spark910 Spark910 is offline
Ex-Graal Global
Spark910's Avatar
Join Date: Oct 2001
Location: England
Posts: 10,892
Spark910 has a spectacular aura about
Hmm, well the new Gserver prevents the IP range of *.*.*.* - so thread closed.
__________________
--Spark911
Closed Thread


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT +2. The time now is 10:22 PM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2026, vBulletin Solutions Inc.
Copyright (C) 1998-2019 Toonslab All Rights Reserved.