It too longer than it should, but there are now filters in place against the syn flood my server got on port 80 in addition to icmp attacks probably against DNS. They came from many different source addresses and were directed to my server only, so it was definitely a mildy competent DDOS attack. Peak traffic was about 20 Megabits, probably limited by the available network bandwidth.
None of this significantly affected SURBL performance, and things should be operating normally again now. We will be taking steps to further reduce the effects of attacks like this.
Until the SYN packets stop, the web site will remain down.
Would anyone like to help mirror the largely static and relatively tiny SURBL web site?
Jeff C. -- "If it appears in hams, then don't list it."