Possible avenue for DOS attack on the site?

Eamonn Nugent eamonn.nugent at demilletech.net
Wed Jun 27 03:36:04 UTC 2018


Hello, all

Just a quick note. When I went to grab some packages from the package list
(long story), I noticed the time to load took *forever*. I'm just going to
hazard a guess that it's generating the list from the directory for every
request? If I may make a gentle suggestion, this could cause a DOS if
someone wanted to make a bunch of requests to the "all" package list.
Perhaps this HTML could be served as static and generated by a cronjob
every half hour or so? I don't know how the server is configured, though,
so it could be a load of work. Cloudflare, perhaps?

Also, I hope this email doesn't go to too many people who have it out for
the FreeBSD project...

For what it's worth, here's the page I was on:
http://pkg.freebsd.org/FreeBSD:11:amd64/release_1/All/

Thanks,

Eamonn Nugent, CTO
demilleTech
eamonn.nugent at demilletech.net

Company
company at demilletech.net

Sales
sales at demilletech.net

Support
support at demilletech.net

This email and any files transmitted with it are confidential and intended
solely for the use of the individual or entity to whom they are addressed.
If you have received this email in error please notify the system manager.
This message contains confidential information and is intended only for the
individual named. If you are not the named addressee you should not
disseminate, distribute or copy this e-mail. Please notify the sender
immediately by e-mail if you have received this e-mail by mistake and
delete this e-mail from your system. If you are not the intended recipient
you are notified that disclosing, copying, distributing or taking any
action in reliance on the contents of this information is strictly
prohibited.


More information about the freebsd-doc mailing list