On 05/05/2017 06:16 PM, Jonathon Weiss wrote:
>
> I've tested a number of compromise configurations. I'm not sure I've
> resolved the cascading failure (time will tell) but I was wondering, if
> I've solved the timeout problem on large keys. Could you re-test?
>
At least for the particular key
Kristian Fiskerstrand wrote:
> On 04/24/2017 09:33 PM, Jonathon Weiss wrote:
> > Daniel,
> >
> > I'm pulling your questions into this thread, which I started before
> > seeing your mail:
> >
> > For reference, I can download this key without a problem. While I'm
> > topologically closer to pgp
Jonathon Weiss wrote:
> 1) multiple client connections come in and are passed from Apache to
>SKS (possibly while SKS is working on a previous query).
>
> 2) SKS works on the first query and returns the answer
>
> 3) for some reason the owner of the second query has disappeared (I
>assume
On 2017-04-24 at 13:53 -0400, Jonathon Weiss wrote:
> An important note here is that I'm using Apache as a proxy for SKS (on
> 80, 443, and 11371).
>
> If I understand how SKS works, it can accept and hold onto multiple
> client connections at once, but only processes them serially.
> 3) Any sugg
On 04/24/2017 09:33 PM, Jonathon Weiss wrote:
> Daniel,
>
> I'm pulling your questions into this thread, which I started before
> seeing your mail:
>
> For reference, I can download this key without a problem. While I'm
> topologically closer to pgp.mit.edu than you are, I believe the 1s
> timeo
Daniel,
I'm pulling your questions into this thread, which I started before
seeing your mail:
For reference, I can download this key without a problem. While I'm
topologically closer to pgp.mit.edu than you are, I believe the 1s
timeout should only count the time passing the info to Apache, not
Hi All,
As the maintainer of what is probably the most heavily used key-server
on the net, I've run into a problem that I wanted to discuss here.
An important note here is that I'm using Apache as a proxy for SKS (on
80, 443, and 11371).
If I understand how SKS works, it can accept and hold ont