Re: BUG #15182: Canceling authentication due to timeout aka Denial ofService Attack

Поиск
Список
Период
Сортировка
От Marko Tiikkaja
Тема Re: BUG #15182: Canceling authentication due to timeout aka Denial ofService Attack
Дата
Msg-id CAL9smLDgjXceft0KDdthy8FK2LJ5VPG3E_bvWK3Ow-w7ePGwqg@mail.gmail.com
обсуждение исходный текст
Ответ на Fwd: BUG #15182: Canceling authentication due to timeout aka Denialof Service Attack  (Jeremy Schneider <schnjere@amazon.com>)
Ответы Re: BUG #15182: Canceling authentication due to timeout aka Denial ofService Attack  (Jeff Janes <jeff.janes@gmail.com>)
Список pgsql-hackers
On Fri, Jul 20, 2018 at 2:17 AM, Jeremy Schneider <schnjere@amazon.com> wrote:
I'd like to bump this old bug that Lloyd filed for more discussion. It
seems serious enough to me that we should at least talk about it.

Anyone with simply the login privilege and the ability to run SQL can
instantly block all new incoming connections to a DB including new
superuser connections.

So..  don't VACUUM FULL pg_authid without lock_timeout?

I can come up with dozens of ways to achieve the same effect, all of them silly.


.m

В списке pgsql-hackers по дате отправления:

Предыдущее
От: Jerry Jelinek
Дата:
Сообщение: Re: patch to allow disable of WAL recycling
Следующее
От: Jerry Jelinek
Дата:
Сообщение: Re: patch to allow disable of WAL recycling