Operation: SlowHTTP Protection
Description: Configure WAF slow HTTP. 

Sample Configuration
<WAFSlowHTTP> <RequestHeaderTimeoutEnabled>Enable/Disable</RequestHeaderTimeoutEnabled> <RequestHeaderTimeoutSoftLimit>10</RequestHeaderTimeoutSoftLimit> <RequestHeaderTimeoutHardLimit>30</RequestHeaderTimeoutHardLimit> <RequestHeaderTimeoutExtensionRate>5000</RequestHeaderTimeoutExtensionRate> <NetworkExceptions> <Host>HostName</Host> </NetworkExceptions> </WAFSlowHTTP>



Parameter Mandatory Default Description
RequestHeaderTimeoutExtensionRateYes  
Specify 'request_header_timeout_ext_rate'
RequestHeaderTimeoutExtensionRate confines to:
  • Type is 'SCALAR'.
  • Datatype is 'INTEGER'.
RequestHeaderTimeoutHardLimitYes  
Specify 'request_header_timeout_hard_limit'
RequestHeaderTimeoutHardLimit confines to:
  • Type is 'SCALAR'.
  • Datatype is 'INTEGER'.
RequestHeaderTimeoutEnabledYes  
Specify 'request_header_timeout_enabled'
RequestHeaderTimeoutEnabled confines to:
  • Type is 'SCALAR'.
  • Only 'Disable', 'Enable' are allowed.
RequestHeaderTimeoutSoftLimitYes  
Specify 'request_header_timeout_soft_limit'
RequestHeaderTimeoutSoftLimit confines to:
  • Type is 'SCALAR'.
  • Datatype is 'INTEGER'.
HostNo  
Specify 'skipped_networks'
Host confines to:
  • Type is 'ARRAY'.
  • Datatype is 'STRING'.
  • Multiple values are allowed.



Operation   Status   Message
SlowHTTP Protection200Operation Successful.
SlowHTTP Protection500Operation Fail.


© Copyright 2019 Sophos Firewall Limited. All rights reserved.
Sophos Firewall is registered trademarks of Sophos Firewall Limited and Sophos Firewall Group. All other product and company names mentioned are trademarks or registered trademarks of their respective owners.
No part of this publication may be reproduced, stored in a retrieval system, or transmitted, in any form or by any means, electronic, mechanical, photocopying, recording or otherwise unless you are either a valid licensee where the documentation can be reproduced in accordance with the license terms or you otherwise have the prior permission in writing of the copyright owner.