From 804ce3723c05cb44da0dc8fceef68138b709cf13 Mon Sep 17 00:00:00 2001 From: Dan Scott Date: Fri, 17 Jun 2011 12:30:12 -0400 Subject: [PATCH] Set AC timeout value to 3 seconds and describe tradeoffs As discussed on the Evergreen Development mailing list, the higher the AC timeout value, the greater the risk of a denial of service. 30 is therefore too high to be comfortable as a default setting, so we're dropping it down to 3 as a compromise between the original value of 1 (which resulted in a number of request timing out where added content was actually available) and the much-less-safe 30. In addition, we document inline the risk/reward of different values and provide some justification for the default value that we chose, so that Evergreen system administrators will have guidance when tweaking this setting. Signed-off-by: Dan Scott Signed-off-by: Mike Rylander --- Open-ILS/examples/opensrf.xml.example | 18 +++++++++++++++--- 1 file changed, 15 insertions(+), 3 deletions(-) diff --git a/Open-ILS/examples/opensrf.xml.example b/Open-ILS/examples/opensrf.xml.example index e41f477487..0b16511464 100644 --- a/Open-ILS/examples/opensrf.xml.example +++ b/Open-ILS/examples/opensrf.xml.example @@ -279,16 +279,28 @@ vim:et:ts=4:sw=4: - OpenILS::WWW::AddedContent::OpenLibrary - 30 + 3