Access limitation & User-Agent

Marc Kalberer info at programmers.ch
Thu Nov 16 11:02:25 EST 2017


Hello,
While looking at my log I saw that I have a huge amount of request to
my Shibboleth.sso

ex:
212.xxx.xx.xxx - - [16/Nov/2017:16:36:30 +0100] "HEAD
/Shibboleth.sso/Login?target=https%3A%2F%2Fxxxxch%2Ffr%3Fq%3Dshib_login%2Fcollections
HTTP/1.1" 302 161 "-" "gvfs/1.20.3"

It doesn't seems to be "normal" access (18'000 today !!).

The IP belong to a state network, so I can't block it, but wouldn't it be
possible to add some condition and block any gvfs/1.20.3 user-agent ?

Since rewritecond seems not been able to handle <location> filtering, how
can I do this ?

-- 
-- 
Programmers.ch
Développement WEB
Solutions libres et Opensources
Tel: ++41 76 44 888 72
Site: http://www.programmers.ch
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20171116/98213775/attachment.html>


More information about the users mailing list