10.10 Configure maxHttpHeaderSize

Information

The maxHttpHeaderSize limits the size of the request and response headers defined in bytes.

Limiting the size of the header request can help protect against Denial of Service (DoS) requests.

Solution

Set maxHttpHeaderSize for each connector in $CATALINA_HOME/conf/server.xml to the appropriate setting.

maxHttpHeaderSize="8192"

See Also

https://workbench.cisecurity.org/benchmarks/15137

Item Details

Category: ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|AC-18, 800-53|SC-23, CSCv7|5.1

Plugin: Unix

Control ID: cfae216f4203acfceba66ff96e653c17dca3002171815642ad39e2c7a79e037c