Basically what's being done, by the sounds of it, is a protocol attack on the EQ port of the server machine. So yea, you can't block the DDoS without blocking all legitimate requests.
Unless you have an edge router with whitelisted IP addresses of verified clients, and the rest null-routed. That's the only real option I see here.
If this is being hosted with DDoS proxy protection, it's possible they might allow IP whitelisting on the proxy. I really have no idea. But then that would be a massive task, individually whitelisting all players... jesus I wouldn't wanna think about setting that up, it would take hours.
|