I was informed by my data center that the IPS detected a lot of "ident bad request" from my server. I couldn't find this on the logs. Any idea what could have caused it?
I was informed by my data center that the IPS detected a lot of "ident bad request" from my server. I couldn't find this on the logs. Any idea what could have caused it?
This probably means that your server is running a script to DDoS a domain hosted on Windows IIS server. We cannot actually call it as DDoS however it depends on the number of request sent per second.
Run the top c and ps auxf command on your server to find the responsible script/user.