View Single Post
  #4 (permalink)  
Old 2006-07-14
Sergej Sergej is offline
Senior Member
 
Join Date: 2005-11-21
Location: Europe, Lithuania
Posts: 291
Rep Power: 4
Sergej has an average reputation (10+)
Default Re: HTTP 1.1 and CVP disaster

Story fwman, did not get what is you initial question about.

I heard about HTTP compression, but now i read deeper and get the problematic. (http://www.websiteoptimization.com/s...weak/compress/)

From CheckPoint document you provided initially it is looks like it is possible to allow HTTP 1.1 but block/strip compression negotiation. This is controlled by
Quote:
The http_disable_content_enc and http_disable_content_type properties control whether
or not to allow data in the HTTP response to be compressed. If these properties are false
(the default value), compression of content in an HTTP response is not allowed. Both these
properties can be either true or false. One may be true when the other is false. Each one
affects it own header.
Did you try this?

P.S. I wonder if the current industry leader IPS/IPS can inspect Compressed HTTP 1.1?
Reply With Quote