On Thu, Nov 05, 2015 at 08:54:39AM +0100, Lukas Tribus wrote:
> >> @@ -402,7 +402,7 @@ smp_fetch_req_ssl_ver(const struct arg *args, struct
> >> sample *smp, const char *kw
> >> if (bleft < 5)
> >> goto too_short;
> >>
> >> - version = (data[1] << 16) + data[2]; /* version: major, minor */
> >> +
On Thu, Nov 5, 2015 at 9:36 AM, Julien Vermillard wrote:
> Hi,
> When we migrated from Apache HTTPD to HA Proxy we found a strange problem.
> We have some old HTTP client (embedded devices) which send a trailling
> whitespace after the HTTP version.
> The send: "GET
On Thu, Nov 5, 2015 at 2:48 PM, Sylvain Faivre
wrote:
> Hi,
>
> Is there a way to use several gpc's ?
>
> I already use gpc0 to track client IPs generating too many errors, and I
> need to use another counter to track client IPs requesting some pages too
> fast.
>
>
The initial record layer version in a SSL handshake may be set to TLSv1.0
or similar for compatibility reasons, this is allowed as per RFC5246
Appendix E.1 [1]. Some implementations are Openssl [2] and NSS [3].
A related issue has been fixed some time ago in commit 57d229747
("BUG/MINOR: acl:
When reloading haproxy too fast on EL7 (RedHat, CentOS) the system is
being filled with orphaned processes.
I encountered this problem on CentOS 7 with
haproxy-1.5.4-4.el7_1.x86_64 but expect it to exist on all systems
using haproxy-systemd-wrapper not just those based on Fedora.
Steps to
Dear Sir or Madam,
Good Morning. This is sales manager's assistant Rosia from WHX Electronic Co.,Ltd. Hopefully not disturbing. Pls allow me to introduce our company and products to you, and hope that we may enter into business cooperation in the future.
WHX
Hi Thierry,
Op 5-11-2015 om 8:08 schreef Thierry FOURNIER:
Hi,
Now, because of you I have my own freebsd installed :). I can
reproduced the segfault. I suppose that the OS other than Freebsd are
impacted, but luckyly it not visible.
OK thanks for installing and trying on FreeBSD :) i suppose
>> This should be backported to stable series, the req_ssl_ver keyword was
>> first introduced in 1.3.16.
>
> Thanks Lukas, applied to 1.7, 1.6, 1.5 and 1.4. For 1.3 there might be
> other patches pending so this one will get there at the same time.
Great.
I didn't really expect a 1.3 backport,
Hi Pieter,
On Thu, Nov 05, 2015 at 08:21:26PM +0100, PiBa-NL wrote:
> >I encounter an easy compilation error. So can you test the two attached
> >patches. The first one fix the compilation issue, and the second one
> >fix he segfault.
> First patch removes the warning below though it always build
On Thu, Nov 05, 2015 at 08:31:28PM +0100, Lukas Tribus wrote:
> >> This should be backported to stable series, the req_ssl_ver keyword was
> >> first introduced in 1.3.16.
> >
> > Thanks Lukas, applied to 1.7, 1.6, 1.5 and 1.4. For 1.3 there might be
> > other patches pending so this one will get
Your email client cannot read this email.
To view it online, please go here:
http://91kuyule.com/display.php?M=129224=5cc5ccbc3b027c395176c49b322e54d3=6!L=5!N=10
To stop receiving these
emails:http://91kuyule.com/unsubscribe.php?M=129224!C=5cc5ccbc3b027c395176c49b322e54d3!L=5!N=6!lan=en
On Thu, Nov 5, 2015 at 3:45 PM, Sylvain Faivre
wrote:
> On 11/05/2015 03:30 PM, Baptiste wrote:
>>
>> On Thu, Nov 5, 2015 at 2:48 PM, Sylvain Faivre
>> wrote:
>>>
>>> Hi,
>>>
>>> Is there a way to use several gpc's ?
>>>
>>> I already use
Hi Baptise,
Thanks for the feedback.
Enabling this only on accept-invalid-http-request is fine for me.
I agree this is not the correct behaviour, but most of reverse proxy and
http proxy we used for several years were resilient to that (even fixing
that) so that's why I'm asking.
Julien
On Thu,
On 11/05/2015 03:30 PM, Baptiste wrote:
On Thu, Nov 5, 2015 at 2:48 PM, Sylvain Faivre
wrote:
Hi,
Is there a way to use several gpc's ?
I already use gpc0 to track client IPs generating too many errors, and I
need to use another counter to track client IPs
Title: Toujours plus de rencontres
Site de rencontre généraliste où les femmes ont le pouvoir
Découvrez le
15 matches
Mail list logo