[jira] [Updated] (SPARK-45248) Slow HTTP Denial of Service Attack【jetty server in spark】

2023-09-25 Thread Sean R. Owen (Jira)


 [ 
https://issues.apache.org/jira/browse/SPARK-45248?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Sean R. Owen updated SPARK-45248:
-
Issue Type: Improvement  (was: Bug)
  Priority: Minor  (was: Major)

> Slow HTTP Denial of Service Attack【jetty server in spark】
> -
>
> Key: SPARK-45248
> URL: https://issues.apache.org/jira/browse/SPARK-45248
> Project: Spark
>  Issue Type: Improvement
>  Components: Spark Core
>Affects Versions: 3.5.0
>Reporter: chenyu
>Assignee: chenyu
>Priority: Minor
>  Labels: pull-request-available
> Fix For: 4.0.0
>
>
> The Jetty server may be slow HTTP denial of service attacks in spark ui.
> The default value of connector IdleTimeout is 3.
> This could trigger such an attack



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

-
To unsubscribe, e-mail: issues-unsubscr...@spark.apache.org
For additional commands, e-mail: issues-h...@spark.apache.org



[jira] [Updated] (SPARK-45248) Slow HTTP Denial of Service Attack【jetty server in spark】

2023-09-21 Thread ASF GitHub Bot (Jira)


 [ 
https://issues.apache.org/jira/browse/SPARK-45248?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

ASF GitHub Bot updated SPARK-45248:
---
Labels: pull-request-available  (was: )

> Slow HTTP Denial of Service Attack【jetty server in spark】
> -
>
> Key: SPARK-45248
> URL: https://issues.apache.org/jira/browse/SPARK-45248
> Project: Spark
>  Issue Type: Bug
>  Components: Spark Core
>Affects Versions: 3.5.0
>Reporter: chenyu
>Priority: Major
>  Labels: pull-request-available
>
> The Jetty server may be slow HTTP denial of service attacks in spark ui.
> The default value of connector IdleTimeout is 3.
> This could trigger such an attack



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

-
To unsubscribe, e-mail: issues-unsubscr...@spark.apache.org
For additional commands, e-mail: issues-h...@spark.apache.org



[jira] [Updated] (SPARK-45248) Slow HTTP Denial of Service Attack【jetty server in spark】

2023-09-21 Thread chenyu (Jira)


 [ 
https://issues.apache.org/jira/browse/SPARK-45248?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

chenyu updated SPARK-45248:
---
Summary: Slow HTTP Denial of Service Attack【jetty server in spark】  (was: 
Slow HTTP Denial of Service Attack)

> Slow HTTP Denial of Service Attack【jetty server in spark】
> -
>
> Key: SPARK-45248
> URL: https://issues.apache.org/jira/browse/SPARK-45248
> Project: Spark
>  Issue Type: Bug
>  Components: Spark Core
>Affects Versions: 3.5.0
>Reporter: chenyu
>Priority: Major
>
> The Jetty server may be slow HTTP denial of service attacks in spark ui.
> The default value of connector IdleTimeout is 3.
> This could trigger such an attack



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

-
To unsubscribe, e-mail: issues-unsubscr...@spark.apache.org
For additional commands, e-mail: issues-h...@spark.apache.org