[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[suse-security] iptables rules for HTML Form Protocol Attack
Last days I often see below messages in Apache log files:
220.127.116.11 - - [09/Jul/2003:17:32:00+0200] "POST http://18.104.22.168:25/ HTTP/1.1" 200 475 "-" "-"
I suspect some kind of HTML protocol attack and want to stop this. Can I
do it somehow with IP-Tables as it is already installed on the server or
do you have any other ideas? I use SuSE 8.1 and SuSEfirewall2 with SuSEfirewall2-custom rules.
Thanks for your replies.