ibm-information-center/dist/eclipse/plugins/i5OS.ic.rzahy_5.4.0.1/rzahydos.htm

52 lines
3.0 KiB
HTML
Raw Normal View History

2024-04-02 14:02:31 +00:00
<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-US" xml:lang="en-us">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="dc.language" scheme="rfc1766" content="en-us" />
<!-- All rights reserved. Licensed Materials Property of IBM -->
<!-- US Government Users Restricted Rights -->
<!-- Use, duplication or disclosure restricted by -->
<!-- GSA ADP Schedule Contract with IBM Corp. -->
<meta name="dc.date" scheme="iso8601" content="2005-09-06" />
<meta name="copyright" content="(C) Copyright IBM Corporation 1998, 2006" />
<meta name="security" content="public" />
<meta name="Robots" content="index,follow"/>
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
<title>Directory Server (LDAP) - Denial of service</title>
<link rel="stylesheet" type="text/css" href="ibmidwb.css" />
<link rel="stylesheet" type="text/css" href="ic.css" />
</head>
<body>
<a id="Top_Of_Page" name="Top_Of_Page"></a><!-- Java sync-link -->
<script language = "Javascript" src = "../rzahg/synch.js" type="text/javascript"></script>
<img src="delta.gif" alt="Start of change" />
<a name="rzahydos"></a>
<h3 id="rzahydos">Denial of service</h3>
<p>The directory server protects against the following types of denial of
service attacks:</p>
<ul>
<li>Clients that send data slowly, send partial data, or send no data</li>
<li>Clients that do not read data results or who read results slowly</li>
<li>Clients that do not unbind</li>
<li>Clients that make requests that produce long-running database requests</li>
<li>Clients that bind anonymously</li>
<li>Server loads that prevent the administrator from administering the server</li></ul>
<p>The directory server gives an administrator several methods to prevent
denial of service attacks. An administrator always has access to the server
through the use of an emergency thread even if the server is busy with long-running
operations. In addition, the administrator has control over server access
including the ability to disconnect clients with a particular bind DN or IP
address and configure the server to not allow anonymous access. Other configuration
options can be activated to allow the server to actively prevent denial of
service attacks.</p>
<p>For more information, see: </p>
<ul>
<li><a href="rzahymanservconn.htm#rzahymanservconn">Manage server connections</a></li>
<li><a href="rzahymanconnprop.htm#rzahymanconnprop">Manage connection properties</a></li></ul><img src="deltaend.gif" alt="End of change" />
<a id="Bot_Of_Page" name="Bot_Of_Page"></a>
</body>
</html>