![]() |
Slowloris http DDoS attack - is LiteSpeed safe?
Hi,
Please can someone confirm if LiteSpeed is vulnerable to this attack: http://ha.ckers.org/slowloris/?docid=EBFPB_IBPWZWR Apache in most installations is, IIS isn't either is Lighttpd and Cherokee (as far as I understand). Thanks. |
It can be easily fend off
http://www.litespeedtech.com/how-tos.html#qa_dos |
So the LiteSpeed DDoS settings are able to cope with this completely different type of DDoS?
|
LSWS can limit the number of connections from one IP, once over the limit, all future connection requests will be dropped, so this type of attack wont affect LSWS.
|
I assume litespeed should be resilient to this new attack?
Quote:
|
Same thing applies; however, if you have CSF installed and you have SynFlood enabled, they could tie up all of your "half-open" connections, which is what is described above. It's not really a new attack. For me I just left the SynFlood portion of CSF set to 0, or disabled. LSWS effectively blocks those attacks also.
|
Same here with CSF, I just wanted to make sure litespeed drops these half open connections...
|
http://www.webhostingtalk.com/showpo...7&postcount=12
George, how does lsws compare to Apache + HAProxy against such attacks? anti-dos config: http://haproxy.1wt.eu/download/1.3/examples/antidos.cfg "More specifically, HAProxy will only forward complete and valid requests" They say nginx would probably do equally well. btw, I assume lsws can handle "nkiller2" ? |
| All times are GMT -7. The time now is 07:44 PM. |