DDoS attacks are divided into two categories: L4 attacks and L7 attacks on OSI 7 layer. It is very difficult to detect Slow HTTP POST DDoS attack because it can be executed with legitimate TCP Connections. This paper proposed monitoring about Content-Length filed size and data size in order to prevent Slow HTTP POST DDoS attack efficiently.
목차
Abstract I. 서 론 II. Slow HTTP POST DDoS 공격특징 III. 관련 연구 1. 접속 임계치 설정을 통한 차단 2. Connection Timeout 과 Keepalivetimeout설정을 통한 차단 3. RequestReadTimeout(mode_reqtimeoutModule) 설정을 통한 차단 4. 페이지별 content-Length 제한 기법 IV. 제안하는 방법 V. 결 론 참고문헌