WAF is for XSS and sql injections. While i have not subjected WAF to a slow attack so i'm not sure it would protect against that type of attack. Since it is based on Apache and there are known vulnerabilities there it may not protect against that at all. Once i get my church's WAF setup i'll have to attack it with the slow Dos attack tools and see..[:)]
WAF is for XSS and sql injections. While i have not subjected WAF to a slow attack so i'm not sure it would protect against that type of attack. Since it is based on Apache and there are known vulnerabilities there it may not protect against that at all. Once i get my church's WAF setup i'll have to attack it with the slow Dos attack tools and see..[:)]