• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

How to stay against low/slow HTTP connections-based type of attacks like Slowloris ?

Scheduled Pinned Locked Moved Firewalling
3 Posts 2 Posters 298 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S
    Sergei_Shablovsky
    last edited by Sergei_Shablovsky Dec 27, 2023, 7:48 PM Dec 26, 2023, 5:09 AM

    Hi pfSense Gurus!

    How to EFFECTIVELY stay against low/slow HTTP connections-based type of attacks like Slowloris ?

    P.S.
    And what about pfSense’s ability to stay against the “newcomers”, attacks listed in follow documents:
    ABAAE520-1E00-4E97-B322-36F2652DC50C.jpeg

    Merry Christmas and Happy New Year to all of You!

    —
    CLOSE SKY FOR UKRAINE https://youtu.be/_tU1i8VAdCo !
    Help Ukraine to resist, save civilians people’s lives !
    (Take an active part in public protests, push on Your country’s politics, congressmans, mass media, leaders of opinion.)

    1 Reply Last reply Reply Quote 0
    • S
      Sergei_Shablovsky
      last edited by Mar 30, 2024, 2:12 PM

      Up

      —
      CLOSE SKY FOR UKRAINE https://youtu.be/_tU1i8VAdCo !
      Help Ukraine to resist, save civilians people’s lives !
      (Take an active part in public protests, push on Your country’s politics, congressmans, mass media, leaders of opinion.)

      S 1 Reply Last reply Mar 30, 2024, 2:55 PM Reply Quote 0
      • S
        SteveITS Galactic Empire @Sergei_Shablovsky
        last edited by Mar 30, 2024, 2:55 PM

        @Sergei_Shablovsky there are ways to do rate limiting in pfSense e.g. https://docs.netgate.com/pfsense/en/latest/firewall/configure.html#maximum-number-of-established-connections-per-host

        Does Suricata have a rule for that?

        Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
        Upvote 👍 helpful posts!

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
          This community forum collects and processes your personal information.
          consent.not_received