moonchen opened a new pull request, #13737:
URL: https://github.com/apache/trafficserver/pull/13737

   Adds `proxy.config.net.connections_throttle_exempt_list`, a reloadable list 
of client addresses, networks and ranges whose connections 
`proxy.config.net.connections_throttle` neither counts nor refuses. These 
connections are left out of `proxy.process.net.connections_currently_open` and 
counted in a new `proxy.process.net.connections_throttle_exempt_in`. The memory 
limit and the per-client limits still apply to them, and the list is matched 
against the socket's peer address, so a PROXY protocol header cannot claim an 
exemption.
   
   At the connection limit, ATS refuses every new client connection, a local 
health check included. A proxy that is full but still serving then fails its 
health check and is taken out of service, which moves its load onto its 
neighbours. Exempting the health check keeps such a proxy in rotation. The 
exempt connections are also left out of the count, so that admitting them never 
takes the count to the limit and causes other clients to be refused.
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to