Skip to content

HTTP/2 Rapid Reset DDoS Mitigaton #1986

@mbabitski-t

Description

@mbabitski-t

Motivation

Provide protection against HTTP/2 Rapid Reset if TempestaFW is susceptible to this type of attack.

Links

Original blog post: https://cloud.google.com/blog/products/identity-security/how-it-works-the-novel-http2-rapid-reset-ddos-attack

CVE: https://nvd.nist.gov/vuln/detail/CVE-2023-44487

Possible remediation: https://gist.github.com/adulau/7c2bfb8e9cdbe4b35a5e131c66a0c088#potential-remediation

Metadata

Metadata

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions