moonchen opened a new pull request, #13737: URL: https://github.com/apache/trafficserver/pull/13737
Adds `proxy.config.net.connections_throttle_exempt_list`, a reloadable list of client addresses, networks and ranges whose connections `proxy.config.net.connections_throttle` neither counts nor refuses. These connections are left out of `proxy.process.net.connections_currently_open` and counted in a new `proxy.process.net.connections_throttle_exempt_in`. The memory limit and the per-client limits still apply to them, and the list is matched against the socket's peer address, so a PROXY protocol header cannot claim an exemption. At the connection limit, ATS refuses every new client connection, a local health check included. A proxy that is full but still serving then fails its health check and is taken out of service, which moves its load onto its neighbours. Exempting the health check keeps such a proxy in rotation. The exempt connections are also left out of the count, so that admitting them never takes the count to the limit and causes other clients to be refused. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected]
