Securing apache part 2

| Thursday, September 20, 2007

1. Listen port
Jika ada bbrp ip maka lakukan spesifikasi dgn Listen : IPV4:80

TimeOut 300 seconds bisa dikecilkan (issue dos attack)
KeepAliveTimeout 5 seconds bisa dikecilkan tapi jgn didisable.
LimitRequestBody 0 bytes (unlimited) Restricts the total size of the HTTP request body sent from the client. If DoS attacks are occurring as a result of large requests, limit request size.
LimitRequestFields 100 fields Limits the number of HTTP request header fields that will be accepted from the client. If DoS attacks are occurring as a result of too many HTTP request headers, lower this number.
LimitRequestFieldSize 8190 bytes Limits the size of the HTTP request header allowed from the client.
LimitRequestLine 8190 bytes This directive sets the number of bytes that will be allowed on the HTTP request-line.
MaxClients 256 requests Sets the limit on the number of simultaneous requests that will be served.

0 komentar: