[Mod-security-developers] SecWriteStateLimit Logging
Brought to you by:
victorhora,
zimmerletw
|
From: Anestis B. <bec...@gm...> - 2012-01-09 12:16:54
|
Hello list, recently applied the SecWriteStateLimit workaround for slow HTTP read DoS attack, as proposed from spiderlabs [1]. Although, we face a great logging overhead on our servers originating from such attacks. Is there any method to limit the logging events at the error_log that am I missing? Searching the list archives didn't show up something relevant. Speaking about Version 2.2.3. Kind Regards, Anestis [1] http://blog.spiderlabs.com/2012/01/modsecurity-advanced-topic-of-the-week-mitigation-of-slow-read-denial-of-service-attack.html -- =============================================== * Anestis Bechtsoudis * * * * Network Operation Center * * Dept. of Computer Engineering & Informatics * * University of Patras, Greece * * * * Website: http://bechtsoudis.com * =============================================== |