Bug#799105: Moreinfo: SPNEGO authentication headers can be up to 12392 bytes.
Bastien Roucariès <[email protected]>
| Newsgroups | gmane.linux.debian.devel.apache |
|---|---|
| Message-ID | <144024595.T5IMXSbTf8__33434.9760830932$1728226107$gmane$org@portable-bastien> |
control: tags -1 + moreinfo
According to a quick research:
The solution was to raise the HTTP request header field size with the following directive:
LimitRequestFieldSize 65536
Have a look at the official Apache HTTPD documentation of this directive:
The LimitRequestFieldSize directive allows the server administrator to set the limit on the allowed size of an HTTP request header field. A server needs this value to be large enough to hold any one header field from a normal client request. The size of a normal request header field will vary greatly among different client implementations, often depending upon the extent to which a user has configured their browser to support detailed content negotiation. SPNEGO authentication headers can be up to 12392 bytes.
To be safe use LimitRequestFieldSize 65536
signature.asc
(application/pgp-signature, 833 B)
-----BEGIN PGP SIGNATURE----- iQIzBAABCgAdFiEEXQGHuUCiRbrXsPVqADoaLapBCF8FAmcConcACgkQADoaLapB CF/g2BAArJWV/HfnFzxPOydGrT2kCPtAZRmBE/n7vQ7Jmshs8hqLB0p2H44JpbEq iqzCZRcCrdtkh1mSDuYU12asAyX5efANWZo8heZ14DdT+927+LMFjopCbkfm+kml kvmuaX4pqn8N+nbK0O0nHUqU7AGnsXO50KY8BzR9GwbIiz3xTI3P97WqFde+8rDX djsmaW5hQdUhur0kooppkEwnUtsBKpCTlL2iobWTwzZ3/mesT79Hjrz6JEXie3+n T1/Qlkc34/wipBiXt8VF62MTN5VJA93hfmvVpyKHTOxh2iEFq6FMTkfi+lW1SRjO 3m34+R30rtcnlcn+/hQa1CsJZ3mytUzm25PKBPSXodpU04xWEG7v45ihHVGMC8qy V4ckhKG5xJttKum1WW3pxg3syGEy4CML3sk8NaSY8Z7M62Aor/1uw4GTSNqvGF/Y SVGRCA7XDszMBuvQYqRIhdFYSekJhjG3TCNyVDsAlMiRa1mtKlrusRiWyEWu7blr C4qx1DL067NBXcLY0m3Cs14OEKbjdIqloJ7EMHTw6b3+T3t3El2qEyCMe9OgiV1J W8/Hdjw68q72YHbYiF7ZtzoQ9thcyTP1DkC7faT07X9TAXiK+SOe/SN9GNhL+wm1 LHg9t9Qk4WWHwFgMNp1RiYXtemGaVFyaOdHLJwiFyElIap7RmJ8= =OkHB -----END PGP SIGNATURE-----