* Micah Snyder (micasnyd) <[email protected]>:

> There are 3 bytecode rules for detecting CVE's that seem to take a
> rather long time to run, particularly as the file grows in size.  I'm
> discussing with our threat research team if we can remove them as
> CVE's are old enough that no one should reasonably still be affected
> by the vulnerabilities.
> 
> I am curious though - what are your MaxFileSize / MaxScanSize
> settings? I wonder if you're seeing timeouts with the default settings
> or if you increased them.

MaxFileSize 100M
MaxScanSize 200M
MaxScanTime 120000

-- 
Ralf Hildebrandt
Charité - Universitätsmedizin Berlin
Geschäftsbereich IT | Abteilung Netz | Netzwerk-Administration
Invalidenstraße 120/121 | D-10115 Berlin

Tel. +49 30 450 570 155
[email protected]
https://www.charite.de
_______________________________________________

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat

Reply via email to