Security Basics mailing list archives

Re: How to prevent Dos and DDoS,


From: Jerry Fraizer <jerry.fraizer () gmail com>
Date: Thu, 16 Feb 2012 06:45:34 -0800

I highly recommend TippingPoint Next Gen IPS. It has filters to detect DDoS coming from script kitty tools, it can rate 
limit, and it has a highly accurate reputation based service for Botnet and Malware detection.

Best of all the sensor is designed to be placed in-line. There are over 12,000 filters that can stop the recon phase 
and it has application awareness.

If anyone would like more info please feel free to unicast me.

Jerry Fraizer, CEH / TippingPoint Solutions Architect / HP Enterprise Security Products 

On Feb 16, 2012, at 4:53 AM, "Carlos Broncano" <cbroncano2004 () yahoo com> wrote:

Take a look at Dosarrest

------Original Message------
From: LIAD Mizrachi <liadmz () gmail com>
To: "Quentin Chung@Programmer" <quentin.chung () programmer com hk>
Cc: "Dinh Truong Quang" <dinhtq () gmail com>,"Calderon, Juan Carlos (GE, Corporate, consultant)" <juan.calderon () 
ge com>,<htroup () acm org>,<security-basics () securityfocus com>,<webappsec () securityfocus com>
Date: Thursday, February 16, 2012 10:07:17 AM GMT+0200
Subject: Re: How to prevent Dos and DDoS,

you are talking about "Behavioral DOS":
http://www.radware.com/Solutions/Enterprise/Security/DoSProtection.aspx

LIAD Mizrachi
liadmz () gmail com


On Thu, Feb 16, 2012 at 09:49, Quentin Chung@Programmer
<quentin.chung () programmer com hk> wrote:

Hi, DINHTQ ,

You need something which could have behavioral determinations between a
normal, legitimate client traffic if you are in client side. Or do
something on distributing the traffic to different sites to prevent hitting
the threshold of each..

of course, hardening your system can help you raise the threshold
before being DOS-ed.

For service provider side you are even difficult as you need something
which could due with huge bandwidth and you have not much choices in
the market and still expensive at this moment.

BR Teddy Quentin Chung

----- Original Message ----- From: "Dinh Truong Quang" <dinhtq () gmail com>
To: "'Calderon, Juan Carlos (GE, Corporate, consultant)'" <juan.calderon () ge com>; <htroup () acm org>
Cc: <security-basics () securityfocus com>; <webappsec () securityfocus com>
Sent: Thursday, February 16, 2012 8:54 AM
Subject: How to prevent Dos and DDoS,





Dear All,

I looking for good solution to prevent DoS, DDoS for my website , Anyone have a good ideal ebout this problem can 
help me ?pls

Thanks and Best Regards,

DINHTQ


------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, 
how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, 
purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for 
set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital 
certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1
------------------------------------------------------------------------



------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, 
how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, 
purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for 
set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital 
certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1
------------------------------------------------------------------------


------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, 
how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, 
purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for 
set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital 
certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1
------------------------------------------------------------------------



------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, 
how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, 
purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for 
set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital 
certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1
------------------------------------------------------------------------


------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, how 
it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, 
install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are 
highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1
------------------------------------------------------------------------


Current thread: