Gerhard Lazu
๐ค SpeakerAppearances Over Time
Podcast Appearances
I don't want to start blocking again, um, IP ranges, net blocks, because we don't know who's going to be caught there.
they may change to other IP blocks.
So that's entirely possible.
We don't know how this will work.
We can't block an entire country, an entire continent, especially if it's a big one.
I don't think that's reasonable.
So really throttling is, I think, the fairest thing.
And then we can throttle MP3s specifically.
Because we do have, for example, I see them, like for example, we have a Python client and a Go client that every week they come and they download all our MP3s.
I don't know why they do that, but every seven days they basically request every single MP3 that we have.
So they're like scraping the website and then pulling everything down.
I don't know why.
Yeah.
Again, the closer, like the more I was looking at, and again, because I was working so deep in this, I started noticing like these...
um behaviors that you would normally not see so it's one of the advantages i suppose to being to working so close with the traffic with all the requests and having this level of um understanding and visibility into every single request so it really helps down to the ip level something like that though like the go client and the python client where would you would that be a honeycomb thing where would that be yeah
it's honeycomb yeah you can filter by user agent for example and you can see that like there'll be on for example say um no i don't want to show any ips or anything like that so that's why i'm looking to screen share that yeah but once we start digging into that you can say group by client agent and you can say filter by mp3s so like url contains mp3 and that will be able to group
And you can say, oh, and by the way, only show me where there's more than, for example, a hundred downloads.
And then you'll start seeing like the outliers, which are the clients that are downloading certain MP3s or MP3s in general excessively.
Now, that can be spoofed.
That's the other thing.