Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Configuring WAF DoS Protection

I was looking to see what the ModSecurity DoS protection parameters are set to on the firewall, and I noticed that the tx.dos_counter_threshold variable is not set anywhere. This causes ModSecurity to ignore the DoS protection rule.

Is this because I'm supposed to only use the SYN/TCP/UDP flood settings for web server DoS protection?

Or am I supposed to add the necessary ModSecurity variables to /usr/apache/conf/waf/modsecurity.conf?

Will doing the above break any ToS/warranty/etc.. ?



This thread was automatically locked due to age.