OH12-1X-000287 - OHS must have the ListenBacklog properly set to restrict the ability of users to launch Denial of Service (DoS) attacks against other information systems or networks.

Information

A web server can limit the ability of the web server being used in a DoS attack through several methods. The methods employed will depend upon the hosted applications and their resource needs for proper operation.

An example setting that could be used to limit the ability of the web server being used in a DoS attack is bandwidth throttling.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

1. Open $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor.

2. Search for the 'ListenBacklog' directive at the OHS server configuration scope.

3. Set the 'ListenBacklog' directive to a value equal to the Maximum Syn Connection Backlog network parameter of the OS; add the directive if it does not exist.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_HTTP_Server_12-1-3_V2R2_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-5(1), CAT|II, CCI|CCI-001094, Rule-ID|SV-221502r879650_rule, STIG-ID|OH12-1X-000287, STIG-Legacy|SV-78953, STIG-Legacy|V-64463, Vuln-ID|V-221502

Plugin: Unix

Control ID: 5b59a8dd10a949e96d5cbf5a2d85e93d09d5c6a389bb9222cf2fef18fecf7db5