You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@httpd.apache.org by "Roy T. Fielding" <fi...@kiwi.ics.uci.edu> on 1998/08/08 02:20:31 UTC

Re: YA Apache DoS attack

I didn't know about the merge problem, but the general issue of how
to restrict incoming bytes has been around for a while.  I've always
wanted a set of server config directives for

   MaxRequestURI
   MaxRequestFields
   MaxRequestFieldSize
   MaxRequestBody

but the overhead of setting up new config directives has stopped me.

....Roy