Web Host Chat - The UK hosting forum
Welcome to the UK's best forum for hosts and hosters!
Other great websites: Game servers, UK Webmasters Forum, UK game chat
»REGISTER NOW!
Go Back   UK Web Host Chat, Hosting Forum, Web Hosting Forum > Web Hosting Chat > Dedicated Servers, VPS and Colocation
Reply  
 
LinkBack (1) Thread Tools  
Old 8th October 2008   1 links from elsewhere to this Post. Click to view. #1 (permalink)
Don't trust VAServe (A2B2 and CheapVPS trademarks) VPS hosting, they ruined your site

Do not trust VAServe (A2B2 and CheapVPS trademarks) VPS hosting, if you want to be online. In other case, they ruined your business in any time.

I've rent unmanaged VPS server from CheapVPS (trademark of VAServe ) more than one year, paying monthly. All looks good, but in one day all falled down.
Friday, 26th September 2008 around 18:00 GMT my client's site was DDOS attacked. I get information about attack only in the Saturday's evening. I've send

alert to the VAServe support, stopping Apache and start to install DDOS protection software - mod_security for Apache and Ngix like balancing proxy. I've use

server mostly for my own sites and some sites of my clients, and don't meet with attacks before.
In next 4 hours my VPS was turned off without any alerts from support, and i lost any access to it, except Web-panel.
At Sunday attacked site was moved to the other hosting, and protected from DDOS attacks, but my hosting was not turned on back. As support says, DDOS attack

still run - but how anyone can attack non-working server?
My server was not turned on in 10 days, no qualified support was get. And also VAServe asks me for payment for the next month, no chargebacks for turning my

server back was returned. My clients charges me for stopping their sites (internet-shops), and i ask VAServe to responce.

VAServe make simple answer - in 24 hours they delete my server with all data. I had no access even for backup databases and files.
Persons, who make this - Russell Foster and Vladimir Neskovic

I can send my conversations wtih support to any people.
bulgarus is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 8th October 2008   #2 (permalink)
About my company:
B61
I am a:
Certified VIP Host
I have made 1596 posts
52 posts within 6 months
Contact Me, Company profile
You are hosting customers on a Cheap value VPS package (not to detract from VAServs VPS offerings as I use their service and its very good). What did you expect in terms of support etc?

These are unmanaged VPS accounts and you should ensure that your server is completely protected.
__________________
Jon Rohan

Please note: My views are my own and not those of the company I work for.
JonRohan is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 8th October 2008   #3 (permalink)
I said nothing about protection. But my server was turned off without any alerts or complaints, and doesn't turned back after attack.
Is it a good behavior for the hosting company, gives 99.9% uptime?
Quote:
Originally Posted by Jon-NC View Post
I use their service and its very good).
Yes, it was good for me too before attack. But - when you get a real trouble, no one of it's support will help you.
Quote:
Originally Posted by Jon-NC View Post
What did you expect in terms of support etc?
Look on Terms&conditions at http://cheapvps.co.uk/legal/terms
Quote:
The Website shall be available to visitors pursuant to the Services 99.9% of the time.
Lie. My server was turned down 9 days before removing. Not Apache downed, but all VPS server. 0Mbs max RAM and 0%CPU used was shown in control panel.
Quote:
Where the Website is not so available due to Downtime, you will be credited with an amount calculated monthly as an aggregate of all Downtime events in accordance with a 10% refund for every 0.1% beyond 99.9%.
Lie. No credit was offered and my server simply was removed.
Quote:
The Supplier warrants to you that all services provided to you by the Supplier shall be provided with due care and skill.
Neither skill, nor care was shown.

If you still use VAServe account - take a care about your data. Don't trust their support, or you can wake up and get "Your account was removed due unknown reason" even on managed server.

Last edited by bulgarus; 8th October 2008 at 09:49 AM.
bulgarus is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 8th October 2008   #4 (permalink)
Ed
About my company:
GeekSRV
I am a:
Certified Standard Host
I have made 694 posts
136 posts within 6 months
Contact Me, Company profile
Are you sure that the e-mail address you've got registered with them isn't one that was hosted on the closed down VPS? check the maillog in https://secure.vaserv.com
__________________
I'm a potential customer! Impress me.
Ed is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 8th October 2008   #5 (permalink)
About my company:
RackSRV Communications
I am a:
Certified VIP Host
I have made 1983 posts
348 posts within 6 months
Contact Me, Company profile
Quote:
Originally Posted by bulgarus View Post
I had no access even for backup databases and files.
I find it very worrying that you have put clients on a cheap unmanaged VPS solution which is more designed for backup services, monitoring etc and have not ensured there is a backup solution in place - that to me shows neglect for your customers data unless your specifically selling an unmanaged service to your clients too?
__________________
RackSRV Communications Limited
UK specialists in Dedicated Servers, Colocation & Rackspace
Company: 06856870 VAT: GB 934 7073 15 Tel: 0844 686 4444
Jon-RackSRV is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 8th October 2008   #6 (permalink)
About my company:
Loho Ltd
I am a:
Certified Standard Host
I have made 256 posts
53 posts within 6 months
Contact Me, Company profile
I'm not making a judgement as to whether what happend was right/wrong, as I don't know enough of the circumstances to make that judgement, however it is worth pointing out that also in their Ts&Cs which you neglected to mention is:
Quote:
if you are dossed the Supplier reserve the right to suspend your account to limit the attack. If you are found to have caused the DDOS your account may be suspended or cancelled and you billed.
__________________
Alex Brett - Technical Director, Loho Ltd
VoIP | SMS | VM Hosting | Web Hosting | Network Management
[e] alex.brett@loho.co.uk [p] 01223 750165 [w] www.loho.co.uk
Company reg: 7117766, VAT reg: GB 984 0292 03
Rebuke is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 8th October 2008   #7 (permalink)
I think the word "unmanaged" should say something
BionicInternet is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 8th October 2008   #8 (permalink)
About my company:
VAServe LTD
I am a:
Certified Standard Host
I have made 446 posts
26 posts within 6 months
Contact Me, Company profile
Your server was the target of a DDOS attack which caused your server and a significant number of other servers to go offline so we blocked internet access to your server on the main IP (null routed). Every day we tested dropping the block and the attack was still going so we refused access on that IP. We restored access via other IP's and our offline control panel so you had access to your data and the ability to make a backup via HyperVM and download it.

Very simply you decided that you wouldn't pay you bill after the DOS attack on your server and per our contract we are allowed to suspend users who are DOS'ed so it doesn't effect everyone. You were 10 days overdue on your invoice and you refused to pay it so we removed all access to the server. You had full access to the server via the offline control panel for the entire week you got free.

Simply per our contract we aren't responsible for your data, you had access to your data and we have explained this a number of times. Your server was removed for non payment and the effect that the attacks on it hurt other users.
__________________
a2b2.com - UK and US Dedicated and Virtual Servers

Last edited by vaserv; 8th October 2008 at 02:56 PM.
vaserv is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 9th October 2008   #9 (permalink)
Quote:
Originally Posted by vaserv View Post
Your server was the target of a DDOS attack which caused your server and a significant number of other servers to go offline so we blocked internet access to your server on the main IP (null routed).
VPS server AFTER turning off Apache can be subject of DDOS attack on 80th port caused to go offline - is it real? Who can answer on requests, when attacked IP address is not used?
How one VPS server, logically separated from other VPS servers on the same physical server can affected to the other servers and main system? Is it real, it looks like bad work of support.
I have other IP address, rented from VAServe - no any offres for change main IP was come from support. Even I asks about it - no actions from support was been, except one email answer.
And - my server was not "null routed" - it was disabled. I had no access to the server using my second IP.

Quote:
Originally Posted by vaserv View Post
Every day we tested dropping the block and the attack was still going so we refused access on that IP.
Did you have any logs, or i can trust only to your words?

Quote:
Originally Posted by vaserv View Post
We restored access via other IP's and our offline control panel so you had access to your data and the ability to make a backup via HyperVM and download it.
Lie.
I had no access to my server from alternate IP, and access via HyperVM cannot allow to get databases, only to files. As you must know, not all bases can migrate usign simple copy, in some cases you need running server - but it wasn't.

Quote:
Originally Posted by vaserv View Post
Very simply you decided that you wouldn't pay you bill after the DOS attack on your server and per our contract we are allowed to suspend users who are DOS'ed so it doesn't effect everyone.
Did DDOS attack was pointed to the whole server, or to the one closed IP? Why server was down (not nulled route, but completely disabled) only after my alert, and don't turned on back after attack?
Where is your guarantee 99.9% uptime?

Quote:
Originally Posted by vaserv View Post
You were 10 days overdue on your invoice and you refused to pay it so we removed all access to the server. You had full access to the server via the offline control panel for the entire week you got free.
Again - i had no full access because server was not running. I had access only to the files.

Quote:
Originally Posted by vaserv View Post
Simply per our contract we aren't responsible for your data, you had access to your data and we have explained this a number of times. Your server was removed for non payment and the effect that the attacks on it hurt other users.
I.e. in any time you can destroy any client's server and said "It was attacked, sorry"

Great service, as I said before.
bulgarus is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 9th October 2008   #10 (permalink)
Quote:
Originally Posted by bulgarus View Post
VPS server AFTER turning off Apache can be subject of DDOS attack on 80th port caused to go offline - is it real? Who can answer on requests, when attacked IP address is not used?
While I can appreciate your frustration at losing your VPS, I am afraid your understanding of networking is incorrect. Just because a VPS is disabled does not mean that the attack will stop, and won't reach VAServ's switch just as it did when the server was active - because it will. Even if DoS packets have nowhere to go when they reach the end device which says "there's no host here to forward to", the end switch - in this case VAServe's network - will still have to deal with that traffic, hence why they had their upstream null route your IPs.


Quote:
Originally Posted by bulgarus View Post
How one VPS server, logically separated from other VPS servers on the same physical server can affected to the other servers and main system? Is it real, it looks like bad work of support.
Again, your understanding is inaccurate. A virtual server is exactly that - virtual. One set of physical hardware (NIC, motherboard backplane, CPU etc) will have to deal with the attack which is headed for your VPS. A DoS attack can easily kill an entire server, therefore just because your VPS is isolated in software, doesn't mean that the underlying hardware will be able to cope - because there's a strong chance it won't.

Quote:
Originally Posted by bulgarus View Post
I have other IP address, rented from VAServe - no any offres for change main IP was come from support. Even I asks about it - no actions from support was been, except one email answer.
Changing IPs may bring you back online for a few minutes, but as soon as the attacker realises what's happened (and if he is this determined, he will), he'll just restart the attack on the new IPs. If he's attacking a hostname rather than an IP, then he won't even need to notice the change - the attack will switch as soon as the DNS record is updated.


Quote:
Originally Posted by bulgarus View Post
Where is your guarantee 99.9% uptime?
I would imagine VAServe will have a clause in their ToS which removes all guarantees under DoS conditions. You need to remember that they have many more clients than you, and can't allow a single client to compromise their wider infrastructure.

Quote:
Originally Posted by bulgarus View Post
I.e. in any time you can destroy any client's server and said "It was attacked, sorry"

Great service, as I said before.
You've been given access to your data, just download it and move on. Although, if the DoS attacker is going to be this persistent, expect the same action from your new host.
stephenM is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 9th October 2008   #11 (permalink)
About my company:
VAServe LTD
I am a:
Certified Standard Host
I have made 446 posts
26 posts within 6 months
Contact Me, Company profile
The attack was enough for us to see packetloss at the switch and taking we host a number of VPS nodes on the same rack it causes lots of customers to point out the issue. Our ToS (as StephenM said) doesn't guarentee 99.9% uptime in the. In fact it states

"We will provide users with 99.9% uptime excluding planned maintenance. We count uptime to be when the server your website is hosted on is accessible via IP address. This SLA does not cover downtime due to mistakes on the clients behalf, due to account suspension or due to hardware failure"

(Side note hardware failure is their for dedi customers not for our hardware I do need to make that clearer)

You could of downloaded a backup at any time during your "free" week so taking that you refused to pay for service just meant we removed it after sending you a number of automated and manual emails.
__________________
a2b2.com - UK and US Dedicated and Virtual Servers
vaserv is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 9th October 2008   #12 (permalink)
About my company:
Othello Technology Systems Ltd
I am a:
Certified VIP Host
I have made 6294 posts
491 posts within 6 months
Contact Me, Company profile
Quote:
Originally Posted by vaserv View Post
(Side note hardware failure is their for dedi customers not for our hardware I do need to make that clearer)
If its a dedicated server its *your* hardware, I can understand you excluding customer collocated hardware ...
__________________
Rob Golding Othello Technology Systems Ltd AS29527 Company#03894981 VAT#GB-782561410 Tel:0871 277 6875
consultancy domains email forwarding resellers ecommerce colo rackspace ip transit secondary mx/dns dedicated servers backup/DR
* OthelloHosts.net Linux and Windows Clustered High-Availability Professional Email / Web / Secure Hosting
* OthelloVPS.net Managed Xen Enterprise Virtual Private Servers and Dedicated Servers
# Currently buying web hosts and domain resellers - www.hostacquisitions.co.uk
othelloRob is online now  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


LinkBacks (?)
LinkBack to this Thread: http://www.webhostchat.co.uk/dedicated-servers-vps-colocation/14675-dont-trust-vaserve-a2b2-cheapvps-trademarks-vps-hosting-they-ruined-your-site.html
Posted By For Type Date
Don't trust VAServe (A2B2 and CheapVPS trademarks) VPS hosting … | Weird Hosting This thread Refback 16th October 2008 09:17 PM

Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Who'd want their site listed on a hosting review site? sabian Discuss a hosting company 23 27th November 2007 11:20 AM
a2b2.com ligaya Discuss a hosting company 6 29th July 2006 07:03 PM
Find me reasons why not to sign up with a2b2 stelios Discuss a hosting company 4 13th July 2005 12:22 PM
trademarks Cyber Shared and Reseller Web Hosting 7 1st December 2001 06:16 PM

Dedicated Servers, VPS and Colocation Visit here to discuss all aspects of Dedicated servers, Virtual Private Server hosting and Colocation


Powered by vBulletin® Version 3.8.0
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0