Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
cloza
New Contributor

Slowloris

Hi, does anyone have idea to mitigate/block this dos attack with FGT? For ref: http://ha.ckers.org/blog/20090617/slowloris-http-dos/
4 REPLIES 4
lmuir
New Contributor

Yes, use a DoS sensor. Depending in your traffic patterns, you might still have trouble mitigating a DDoS attack but then again, so do most people.
Secure_IT_BE_Nick
New Contributor III

I tested slowloris on our fgates, FG detects it as http-request smuggling. In combination with quarantaining an excellent solution :)

[link]https://www.secure-it.be[/link]

[link]https://www.secure-it.be[/link]
TopJimmy
New Contributor

how did you set it up?
-TJ
-TJ
Carl_Wallmark
Valued Contributor

install FortiOS ver. 4 Then you can quarantine attackers IP with IPS profiles, sweeet ! ;)

FCNSA, FCNSP
---
FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30B
FortiAnalyzer 100B, 100C
FortiMail 100,100C
FortiManager VM
FortiAuthenticator VM
FortiToken
FortiAP 220B/221B, 11C

FCNSA, FCNSP---FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30BFortiAnalyzer 100B, 100CFortiMail 100,100CFortiManager VMFortiAuthenticator VMFortiTokenFortiAP 220B/221B, 11C
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors