June 26, 2009
Recently the Slowloris Denial of Service attack has jumped in popularity. This attack is similar to SYN flood, but uses HTTP instead, basically consuming sockets on the Web Server vs. trying to saturate all the bandwidth. This is an interesting attack, particularly because it does not require a lot of bandwidth by the attacker. Indeed it is possible to DoS even large sites simply using a common residential Internet connection, and using Slowloris to eat-up the Web Server's ability to respond to other HTTP requests, by sending partial ones itself and thus holding the sockets open. You can read more about this DoS technique here.
While the approach is not new, the working implementation of it "for the masses" is starting to appear more commonly.
As we have already received dozens of queries about how to stop this attack, we'd like to inform you that Astaro installations with current/updated Intrusion Protection Patterns will be protected against this, so neither admins or their Web Servers need to fear. The ID for this new rule is #1000023, and is located in the HTTP Servers Group under the Apache category. If your ASG installation is showing pattern revision 9857 or better, you are protected.
May 8, 2009
Astaro has long been quite vocal about how our products are developed. We want to build products that solve problems. Products that people want to buy. One of the projects we've been working on is a new, openly visible community where your ideas, feature requests, tweaks, and other changes can be posted, viewed, commented on, and given weight by others. We are pleased to announce that http://feature.astaro.com is now live.
Whether you are an Astaro home user, customer, partner, distributor, or have yet to upgrade to Astaro from another product and improved your company with our solution, we welcome your feedback and ideas!
Continue reading "New Astaro Feature Request Site" »
January 29, 2007
I hope you saw already our new home page - it includes also a list of open jobs.
Especially I want point you to the R&D positions in Germany. We offer flexible hours, a relaxed work environment, a climate of success and a chance to work in a dynamic start-up company. If you are looking for a company that challenges you to do your best, Astaro is the place for you. To apply for a position, please review our job openings and submit your resume online.
November 12, 2006
Every year, SC Magazine opens the voting process to the public with the 'Reader's Trust Awards'. Business users who have a vested interest in information security have the chance to vote for their favourite product or service. The winner will be awarded with the highly acclaimed 'SC Magazine Best of 2007' accolade for their respective category.
It would be a great honour for us, to receive this award and we ask of you, our loyal customers, to lend us your voice and vote for Astaro!