killapache

Aug. 25th, 2011 05:14 pm
ocehb: (Default)
[personal profile] ocehb


# grep killapache /etc/httpd/modsecurity.d/modsecurity_localrules.conf
SecRule REQUEST_HEADERS:Range "@rx bytes=.+?,.+?," "drop,log,noauditlog,msg:'killapache range attack',status:417"
#


как работает -- дропает соединение, если в заголовке больше чем два диапазона.

да, mod_security полезный модуль :)


This account has disabled anonymous posting.
If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

If you are unable to use this captcha for any reason, please contact us by email at support@dreamwidth.org

Profile

ocehb: (Default)
ocehb

January 2021

S M T W T F S
     12
345 6789
10111213141516
17181920212223
24252627282930
31      

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags
Page generated Feb. 5th, 2026 03:03 pm
Powered by Dreamwidth Studios