For most modern setups, GBD v30 works best as a before traffic reaches your application, but should not be your only DDoS mitigation strategy.
: Never expose your server's actual IP address; use a "clean" IP that is only accessible from your proxy/CDN.
ipset list gbd_blacklist
: Launching a DDoS attack is a federal crime in many jurisdictions, punishable by fines and imprisonment.
Instead of using DDoS tools, modern admins subscribe to mitigation. If you were searching for "Good Bye DDoS v30" because you are under attack, here is the solution: