cluster-devel.redhat.com archive mirror
 help / color / mirror / Atom feed
From: rmccabe@sourceware.org <rmccabe@sourceware.org>
To: cluster-devel.redhat.com
Subject: [Cluster-devel] conga/ricci/ricci Server.cpp
Date: 21 Aug 2007 21:26:49 -0000	[thread overview]
Message-ID: <20070821212649.21570.qmail@sourceware.org> (raw)

CVSROOT:	/cvs/cluster
Module name:	conga
Changes by:	rmccabe at sourceware.org	2007-08-21 21:26:49

Modified files:
	ricci/ricci    : Server.cpp 

Log message:
	Block a DoS attack that could be used to cause ricci to deny legitimate connections.

Patches:
http://sourceware.org/cgi-bin/cvsweb.cgi/conga/ricci/ricci/Server.cpp.diff?cvsroot=cluster&r1=1.5&r2=1.6

--- conga/ricci/ricci/Server.cpp	2006/10/14 17:53:27	1.5
+++ conga/ricci/ricci/Server.cpp	2007/08/21 21:26:49	1.6
@@ -48,6 +48,7 @@
 
 
 
+static time_t last_purge = 0;
 static bool shutdown_pending = false;
 static void shutdown(int);
 
@@ -86,8 +87,10 @@
     poll_data.revents = 0;
     
     // wait for events
-    int ret = poll(&poll_data, 1, 500);
-    if (ret == 0) {
+    int ret = poll(&poll_data, 1, 1000);
+    time_t cur_time = time(NULL);
+    if (ret == 0 || cur_time - last_purge >= 2) {
+      last_purge = cur_time;
       // clean up clients
       list<list<counting_auto_ptr<ClientInstance> >::iterator> remove_us;
       for (list<counting_auto_ptr<ClientInstance> >::iterator iter = clients.begin();
@@ -102,14 +105,16 @@
 	clients.erase(*iter);
 	cout << "client removed" << endl;
       }
-      
+    }
+
+    if (ret == 0) {
       // continue waiting
       continue;
     } else if (ret == -1) {
       if (errno == EINTR)
         continue;
       else
-        throw String("poll() error");
+        throw String("poll() error: " + String(strerror(errno)));
     }
     
     // process events
@@ -117,8 +122,7 @@
       try {
 	ClientSocket sock = _server.accept();
 	counting_auto_ptr<ClientInstance> 
-	  client(new ClientInstance(sock, 
-				    _dbus_controller));
+	  client(new ClientInstance(sock, _dbus_controller));
 	client->start();
 	clients.push_back(client);
 	cout << "client added" << endl;



             reply	other threads:[~2007-08-21 21:26 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2007-08-21 21:26 rmccabe [this message]
  -- strict thread matches above, loose matches on Subject: below --
2007-08-21 21:26 [Cluster-devel] conga/ricci/ricci Server.cpp rmccabe
2007-08-21 21:25 rmccabe
2006-10-14 17:53 kupcevic

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20070821212649.21570.qmail@sourceware.org \
    --to=rmccabe@sourceware.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).