Jump to content

What are the security implications of running a minecraft server from home 24/7 (like using your home ip)

I am running a minecraft server for my friends and want to have it always running, but I am worried about the security risks, 

What would be the risks. and how do I mitigate them 

Link to comment
Share on other sites

Link to post
Share on other sites

As long as it's just you with friends it's fine. If it's public then well DO NOT use your ip. Get a dns or whatevers.

Link to comment
Share on other sites

Link to post
Share on other sites

3 hours ago, jaslion said:

As long as it's just you with friends it's fine. If it's public then well DO NOT use your ip. Get a dns or whatevers.

Sorry but this makes no sense, "DNS" is simply mapping from something human readable to an IP address, it doesnt protect you from attacks. 

 

The main issue with running things from home is that people may run things on ports that have vulnerabilities. Some of these are low risk, but some can be high risk vulnerabilities. With uPnP these ports are automatically mapped open and available if your router doesnt have advanced security protection. Also many people use older routers that can be open to attack (such as DNS reflection attacks) because they haven't been patched. 

 

By running popular services such as game servers, you get picked up more by bot scanners that search for vulnerabilities. 

 

Additionally you can sometimes become a target to DDoS attacks that want to take down the server such as using botnet's to do smurfing attacks. This is why many services (such as game servers, and this forum) use ddos protection services such as Cloudflare that mask your servers real IP address. This is also why many ISP's have terms of service that state not to run servers on your consumer connection, because it means they may need to change your IP and blacklist the IP for some time to mitigate the attack to their network and other customers. 

Spoiler

Desktop: Ryzen9 5950X | ASUS ROG Crosshair VIII Hero (Wifi) | EVGA RTX 3080Ti FTW3 | 32GB (2x16GB) Corsair Dominator Platinum RGB Pro 3600Mhz | EKWB EK-AIO 360D-RGB | EKWB EK-Vardar RGB Fans | 1TB Samsung 980 Pro, 4TB Samsung 980 Pro | Corsair 5000D Airflow | Corsair HX850 Platinum PSU | Asus ROG 42" OLED PG42UQ + LG 32" 32GK850G Monitor | Roccat Vulcan TKL Pro Keyboard | Logitech G Pro X Superlight  | MicroLab Solo 7C Speakers | Audio-Technica ATH-M50xBT2 LE Headphones | TC-Helicon GoXLR | Audio-Technica AT2035 | LTT Desk Mat | XBOX-X Controller | Windows 11 Pro

 

Spoiler

Server: Fractal Design Define R6 | Ryzen 3950x | ASRock X570 Taichi | EVGA GTX1070 FTW | 64GB (4x16GB) Corsair Vengeance LPX 3000Mhz | Corsair RM850v2 PSU | Fractal S36 Triple AIO | 12 x 8TB HGST Ultrastar He10 (WD Whitelabel) | 500GB Aorus Gen4 NVMe | 2 x 2TB Samsung 970 Evo Plus NVMe | LSI 9211-8i HBA

 

Link to comment
Share on other sites

Link to post
Share on other sites

Use dyndns Domain and Off you Go.

CPU

Intel  i9 13900k

Motherboard

Asrock Z790 Taichi

RAM

Kingston Fury Beast DDR5 RGB 32GB 6000MHZ

GPU

MSI GeForce RTX 4090 GAMING TRIO 24G 

 

Storage

Samsung SSD 980 PRO 1TB 
Unraid NAS 10Gbit about 50TB HDD's, i713700k 64GB DDR5 crucial @ 5800Mhz 

 

 

 

Win11 Workstation

Link to comment
Share on other sites

Link to post
Share on other sites

12 minutes ago, Domrockt said:

Use dyndns Domain and Off you Go.

DynDNS is not a DDos Protection service. 

Spoiler

Desktop: Ryzen9 5950X | ASUS ROG Crosshair VIII Hero (Wifi) | EVGA RTX 3080Ti FTW3 | 32GB (2x16GB) Corsair Dominator Platinum RGB Pro 3600Mhz | EKWB EK-AIO 360D-RGB | EKWB EK-Vardar RGB Fans | 1TB Samsung 980 Pro, 4TB Samsung 980 Pro | Corsair 5000D Airflow | Corsair HX850 Platinum PSU | Asus ROG 42" OLED PG42UQ + LG 32" 32GK850G Monitor | Roccat Vulcan TKL Pro Keyboard | Logitech G Pro X Superlight  | MicroLab Solo 7C Speakers | Audio-Technica ATH-M50xBT2 LE Headphones | TC-Helicon GoXLR | Audio-Technica AT2035 | LTT Desk Mat | XBOX-X Controller | Windows 11 Pro

 

Spoiler

Server: Fractal Design Define R6 | Ryzen 3950x | ASRock X570 Taichi | EVGA GTX1070 FTW | 64GB (4x16GB) Corsair Vengeance LPX 3000Mhz | Corsair RM850v2 PSU | Fractal S36 Triple AIO | 12 x 8TB HGST Ultrastar He10 (WD Whitelabel) | 500GB Aorus Gen4 NVMe | 2 x 2TB Samsung 970 Evo Plus NVMe | LSI 9211-8i HBA

 

Link to comment
Share on other sites

Link to post
Share on other sites

Some people really need to learn what a DNS is...

Desktop: Ryzen 9 3950X, Asus TUF Gaming X570-Plus, 64GB DDR4, MSI RTX 3080 Gaming X Trio, Creative Sound Blaster AE-7

Gaming PC #2: Ryzen 7 5800X3D, Asus TUF Gaming B550M-Plus, 32GB DDR4, Gigabyte Windforce GTX 1080

Gaming PC #3: Intel i7 4790, Asus B85M-G, 16B DDR3, XFX Radeon R9 390X 8GB

WFH PC: Intel i7 4790, Asus B85M-F, 16GB DDR3, Gigabyte Radeon RX 6400 4GB

UnRAID #1: AMD Ryzen 9 3900X, Asus TUF Gaming B450M-Plus, 64GB DDR4, Radeon HD 5450

UnRAID #2: Intel E5-2603v2, Asus P9X79 LE, 24GB DDR3, Radeon HD 5450

MiniPC: BeeLink SER6 6600H w/ Ryzen 5 6600H, 16GB DDR5 
Windows XP Retro PC: Intel i3 3250, Asus P8B75-M LX, 8GB DDR3, Sapphire Radeon HD 6850, Creative Sound Blaster Audigy

Windows 9X Retro PC: Intel E5800, ASRock 775i65G r2.0, 1GB DDR1, AGP Sapphire Radeon X800 Pro, Creative Sound Blaster Live!

Steam Deck w/ 2TB SSD Upgrade

Link to comment
Share on other sites

Link to post
Share on other sites

On 5/6/2021 at 6:41 PM, OwayBaway said:

I am running a minecraft server for my friends and want to have it always running, but I am worried about the security risks, 

What would be the risks. and how do I mitigate them 

With a consumer grade router? Not much im afraid.

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×