Paul Querna wrote:

[EMAIL PROTECTED] wrote:

*long but interesting, I hope*

yes it is, to me anyway.

3) The Event MPM Might handle this load better, since it could pass off the one-char a second requests to the event thread.

no doubt it could be taught to do that and provide relief for this type of attack. but just to be clear it doesn't do this today. the connection will go into CONN_STATE_READ_REQUEST_LINE state, get dispatched to a worker thread, and call ap_read_request which is unchanged from the worker or prefork mpms (i.e. synchronous) AFAIK.


Greg



Reply via email to