current config,1.112,1.113
Fabian Keil via ijbswa-commits <[email protected]> Thu, 08 Jun 2017 13:09:36 +0000
| Newsgroups | gmane.comp.web.privoxy.cvs |
|---|---|
| Message-ID | <[email protected]> |
Update of /cvsroot/ijbswa/current
In directory sfp-cvs-1.v30.ch3.sourceforge.com:/tmp/cvs-serv32603
Modified Files:
config
Log Message:
Regenerate config file with 'receive-buffer-size' and 'trusted-cgi-referer' sections
Sponsored by: Robert Klemme
Index: config
===================================================================
RCS file: /cvsroot/ijbswa/current/config,v
retrieving revision 1.112
retrieving revision 1.113
diff -C2 -d -r1.112 -r1.113
*** config 26 Aug 2016 13:14:18 -0000 1.112
--- config 8 Jun 2017 13:09:34 -0000 1.113
***************
*** 1,7 ****
! # Sample Configuration File for Privoxy 3.0.26
#
# $Id$
#
! # Copyright (C) 2001-2016 Privoxy Developers https://www.privoxy.org/
#
#####################################################################
--- 1,7 ----
! # Sample Configuration File for Privoxy 3.0.27
#
# $Id$
#
! # Copyright (C) 2001-2017 Privoxy Developers https://www.privoxy.org/
#
#####################################################################
***************
*** 1168,1171 ****
--- 1168,1224 ----
enable-proxy-authentication-forwarding 0
#
+ # 4.10. trusted-cgi-referer
+ # ==========================
+ #
+ # Specifies:
+ #
+ # A trusted website or webpage whose links can be followed to
+ # reach sensitive CGI pages
+ #
+ # Type of value:
+ #
+ # URL or URL prefix
+ #
+ # Default value:
+ #
+ # Unset
+ #
+ # Effect if unset:
+ #
+ # No external pages are considered trusted referers.
+ #
+ # Notes:
+ #
+ # Before Privoxy accepts configuration changes through CGI pages
+ # like client-tags or the remote toggle, it checks the Referer
+ # header to see if the request comes from a trusted source.
+ #
+ # By default only the webinterface domains config.privoxy.org
+ # and p.p are considered trustworthy. Requests originating from
+ # other domains are rejected to prevent third-parties from
+ # modifiying Privoxy's state by e.g. embedding images that
+ # result in CGI requests.
+ #
+ # In some environments it may be desirable to embed links to CGI
+ # pages on external pages, for example on an Intranet homepage
+ # the Privoxy admin controls.
+ #
+ # The "trusted-cgi-referer" option can be used to add that page,
+ # or the whole domain, as trusted source so the resulting
+ # requests aren't rejected. Requests are accepted if the
+ # specified trusted-cgi-refer is the prefix of the Referer.
+ #
+ # +-----------------------------------------------------+
+ # | Warning |
+ # |-----------------------------------------------------|
+ # |Declaring pages the admin doesn't control trustworthy|
+ # |may allow malicious third parties to modify Privoxy's|
+ # |internal state against the user's wishes and without |
+ # |the user's knowledge. |
+ # +-----------------------------------------------------+
+ #
+ trusted-cgi-referer http://www.example.org/
+ #
+ #
# 5. FORWARDING
# ==============
***************
*** 2187,2190 ****
--- 2240,2290 ----
#
#
+ # 6.17. receive-buffer-size
+ # ==========================
+ #
+ # Specifies:
+ #
+ # The size of the buffer Privoxy uses to receive data from the
+ # server.
+ #
+ # Type of value:
+ #
+ # Size in bytes
+ #
+ # Default value:
+ #
+ # 5000
+ #
+ # Notes:
+ #
+ # Increasing the receive-buffer-size increases Privoxy's memory
+ # usage but can lower the number of context switches and thereby
+ # reduce the cpu usage and potentially increase the throughput.
+ #
+ # This is mostly relevant for fast network connections and large
+ # downloads that don't require filtering.
+ #
+ # Reducing the buffer size reduces the amount of memory Privoxy
+ # needs to handle the request but increases the number of
+ # systemcalls and may reduce the throughput.
+ #
+ # A dtrace command like: "sudo dtrace -n 'syscall::read:return /
+ # execname == "privoxy"/ { @[execname] = llquantize(arg0, 10, 0,
+ # 5, 20); @m = max(arg0)}'" can be used to properly tune the
+ # receive-buffer-size. On systems without dtrace, strace or
+ # truss may be used as less convenient alternatives.
+ #
+ # If the buffer is too large it will increase Privoxy's memory
+ # footprint without any benefit. As the memory is (currently)
+ # cleared before using it, a buffer that is too large can
+ # actually reduce the throughput.
+ #
+ # Examples:
+ #
+ # # Increase the receive buffer size
+ # receive-buffer-size 32768
+ #
+ #
+ #
# 7. WINDOWS GUI OPTIONS
# =======================
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot