Re: POST content Attack?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Quoting Fayland Lam <fayland@xxxxxxxxx>:

> hi list.
>
> we are in attack I think. our Perl script is taking 2G to process one
> request.
>
> 8: 18940 1567M  5.9M 1567M 1121M W  0.000s  0.000s  459 1.2.3.4
> www.xxsite.com POST /comment/post HTTP/1.0
>
> that's from vmonitor.
>
> I'm wondering is there someone to put large content in our comment
> textarea?
> we limited size in Apache httpd.conf (LimitRequestBody 11000000) but it
> doesn't help.
> or it's not related to POST content?

>From "perldoc CGI":

       $CGI::POST_MAX
           If set to a non-negative integer, this variable puts a ceiling
on
           the size of POSTings, in bytes.  If CGI.pm detects a POST that
is
           greater than the ceiling, it will immediately exit with an error
           message.  This value will affect both ordinary POSTs and
multipart
           POSTs, meaning that it limits the maximum size of file uploads
as
           well.  You should set this to a reasonably high value, such as 1
           megabyte.

Regards,



Jie


----------------------------------------------------------------
This message was sent using IMP, the Internet Messaging Program.

---------------------------------------------------------------------
The official User-To-User support forum of the Apache HTTP Server Project.
See <URL:http://httpd.apache.org/userslist.html> for more info.
To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx
   "   from the digest: users-digest-unsubscribe@xxxxxxxxxxxxxxxx
For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx


[Index of Archives]     [Open SSH Users]     [Linux ACPI]     [Linux Kernel]     [Linux Laptop]     [Kernel Newbies]     [Security]     [Netfilter]     [Bugtraq]     [Squid]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Samba]     [Video 4 Linux]     [Device Mapper]

  Powered by Linux