11.07.2015 Views

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

How To: Harden the TCP/IP Stack 759Protect Against ICMP AttacksThe named value in this section is under the registry keyHKLM\System\CurrentControlSet\Services\AFD\ParametersValue: EnableICMPRedirectRecommended value data: 0Valid values: 0 (disabled), 1 (enabled)Description: Modifying this registry value to 0 prevents the creation of expensive hostroutes when an ICMP redirect packet is received.Use the value summarized in Table 2 for maximum protection:Table 2 Recommended ValuesValue NameValue (REG_DWORD)EnableICMPRedirect 0Protect Against SNMP AttacksThe named value in this section is located under the registry keyHKLM\System\CurrentControlSet\Services\Tcpip\Parameters.Value: EnableDeadGWDetectRecommended value data: 0Valid values: 0 (disabled), 1, (enabled)Description: Prevents an attacker from forcing the switching to a secondary gatewayUse the value summarized in Table 3 for maximum protection.Table 3 Recommended ValuesValue NameValue (REG_DWORD)EnableDeadGWDetect 0

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!