Re: siege failing and so on
"Dmitry P. Schegolev" <[email protected]> Sun, 12 Oct 2003 21:53:55 +0400
| Newsgroups | gmane.comp.apache.metuxmpm |
|---|---|
| Message-ID | <[email protected]> |
- [email protected] --------------------------------------------------------------------- <snip> > > I've been thinking about this for a while, on a production webserver, can > > we not stop people from attaching stuff to processes in the OS? > > hmm, perhaps we could do a little trick. Let an watch process ptrace > the processors. This would prevent the attacker from ptracing it and will > ensure that he cannot put its own code into the webserver process. > How many resources will this consume ? Does anyone know for what we battle avoiding separate multiplexer? Is it half of perfomance or a little bit(> 10%) ? Is it need to be tested or anyone knows the answer? Best regards, Dmitry.