Welcome! Log In Create A New Profile

Advanced

keepalive_timeout 1 1 & client_body_buffer_size question

David Taveras
March 08, 2010 06:04PM
Hello,

Iam currently exploring the following directives

First

keepalive_timeout 1 1 ... Suppose Iam getting a slowloris attack, I
think this is a great parameter to reduce in such case. Would normal
browser simply reopen a connection if they could not work on that low
keep alive timeout? How would browsers react aside probably if they
are behind a slow connection it would cause them to send a new
connection for each request?

Second..

I have been told that setting a low (1k) client_body_buffer_size is
suitable to protect against buffer overflows. However Iam reading that
any body buffer size greater then that will simply be written to the
disk. What exactly is the advantage here? How would I be able to test
this parameter from the outside?

(To be honest I dont know what a client body buffer size is.. tried
google but that didnt help much)

David

_______________________________________________
nginx mailing list
nginx@nginx.org
http://nginx.org/mailman/listinfo/nginx
Subject Author Posted

keepalive_timeout 1 1 & client_body_buffer_size question

David Taveras March 08, 2010 06:04PM

Re: keepalive_timeout 1 1 & client_body_buffer_size question

David Taveras March 09, 2010 05:46PM



Sorry, only registered users may post in this forum.

Click here to login

Online Users

Guests: 267
Record Number of Users: 8 on April 13, 2023
Record Number of Guests: 421 on December 02, 2018
Powered by nginx      Powered by FreeBSD      PHP Powered      Powered by MariaDB      ipv6 ready