Limited HTTPD Connections. How To Not Limit Them

Apr 13, 2007

When I SSH'd into my box, I received this message:

example.pl is on this server. HTTPD connections have been limited to restrict this script from overloading server. All servers that have hosted this file need to have extremely limited http connections or have this file removed. It is poorly written and intense on CPU/memory.

How do I go and allow example.pl to be run on my server again? I use it solely for personal sites, so I wish to not have this file blocked and be allowed to run. I've searched for almost an hour now so I figured I would go ahead and post to see if any more experienced members could assist.

View 3 Replies


ADVERTISEMENT

SSH Connections Limited To 2

May 2, 2008

I signed up for a hosted account with gator and I don't understand something. They tell me it's a policy change for security reasons but the simultaneous SSH connections has been limited to 2. That's just nuts. Is there a real reason why someone would limit this? i need two for editors, one for shell and one for mysql. Minimum of 4. What security concern could cause them to pick 2 as the number?

I just don't get it.

Here's what they said to me.

info: Please wait for a HostGator operator to respond.

Channel Sanderson: Hi. We're working on our website and have run into a small snag. It seems we can only have two open SSH connections at a time this week. We were able to open more a couple weeks ago. Is this something that you can change?

Kella J.: Ok, the issue is.. You are only alllowed 2, no matter what..
Channel Sanderson: I believe we are not understanding each other. We're not trying to connect 10 times in a minute. We just need more connections. 2 is insufficient. We need a minimum of 4 simultaneous connections to our server.

Kella J.: I am sorry, I checked with my admin.. he said there is only a limit of 2, period..

Channel Sanderson: This is an unnecessary limitation in my view and badly limits my ability to do what I need to do.

View 13 Replies View Related

Limit Connections Per IP

May 15, 2008

How can I Limit connections per IP in IIS6?

For example 10 connection per IP is allowed in a minute.

View 0 Replies View Related

Limit # Ip Connections

May 31, 2008

on setting up some sort of firewall who only allows 10 connections from the same ip to avoid spamming, abuse on the server.

How should i do this?

View 3 Replies View Related

24000 Httpd Connections Over My Server

Mar 17, 2007

As you can see.. there are LOT of connections, checked the network traffic with the NOC, and there is no attack to this server, also, load average is just fine ( fine to handle thos 24000 connections ) :

Code:
top - 16:22:06 up 1 day, 4:10, 1 user, load average: 2.35, 1.92, 1.80
Tasks: 486 total, 3 running, 483 sleeping, 0 stopped, 0 zombie
Cpu(s): 18.1% us, 15.8% sy, 0.0% ni, 57.8% id, 8.0% wa, 0.3% hi, 0.0% si
Mem: 2074864k total, 2057424k used, 17440k free, 28292k buffers
Swap: 2048276k total, 536k used, 2047740k free, 1254496k cached

Code:
[root@server.com~]netstat -an | grep :80 | awk '{ print $5 }' | awk -F: '{ print $1 }' | sort | uniq -c | sort -n
1 165.98.162.70
1 189.131.41.44
1 189.148.21.71
1 189.162.12.79
1 190.40.197.20
1 190.40.221.8
1 190.42.165.10
1 190.56.52.170
1 190.82.40.239
1 190.83.16.78
1 190.86.112.232
1 196.218.61.109
1 200.0.251.141
1 200.107.182.157
1 200.117.132.42
1 200.127.9.187
1 200.127.93.33
1 200.26.154.213
1 200.45.154.172
1 200.45.95.106
1 200.55.33.114
1 200.64.167.167
1 200.65.120.103
1 200.65.224.31
1 200.65.90.116
1 200.81.215.68
1 200.86.145.51
1 200.91.196.101
1 201.13.148.63
1 201.216.210.81
1 201.217.21.18
1 201.221.165.235
1 201.223.163.188
1 201.223.58.53
1 201.225.168.66
1 201.229.227.19
1 201.232.67.214
1 201.252.177.89
1 201.42.47.152
1 201.66.167.80
1 208.35.120.69
1 213.230.57.171
1 213.99.203.36
1 217.15.46.97
1 41.250.35.182
1 62.57.223.4
1 64.12.116.198
1 66.50.4.169
1 70.157.51.76
1 80.103.194.241
1 80.103.244.9
1 80.35.105.72
1 81.167.76.64
1 81.172.59.38
1 81.184.125.159
1 81.42.136.159
1 83.175.216.139
1 83.34.75.215
1 83.40.177.122
1 83.56.243.100
1 83.61.202.162
1 84.172.114.77
1 84.76.47.159
1 84.78.51.134
1 85.59.105.82
1 85.59.44.144
1 85.84.196.176
1 87.217.248.132
1 87.9.3.227
1 88.13.59.80
1 88.14.151.83
1 88.243.44.243
1 88.6.193.57
1 89.52.119.106
1 91.5.25.69
2 148.240.103.239
2 148.240.106.145
2 189.160.98.131
2 189.164.91.133
2 190.24.64.111
2 190.5.196.42
2 195.159.192.94
2 195.160.204.167
2 200.122.26.161
2 200.255.166.196
2 200.58.31.210
2 200.65.200.61
2 200.81.220.213
2 200.82.241.167
2 201.20.119.160
2 201.228.198.9
2 201.228.81.192
2 201.240.236.4
2 201.243.14.219
2 62.83.224.234
2 69.134.194.23
2 80.58.205.32
2 81.36.149.153
2 82.158.193.220
2 83.29.165.39
2 83.33.149.36
2 84.202.151.213
2 85.201.148.63
2 87.19.141.251
3 189.162.4.190
3 190.40.133.222
3 190.6.165.21
3 190.65.7.162
3 200.116.118.133
3 217.216.179.124
3 62.141.241.95
3 83.147.147.5
3 84.18.27.169
3 84.32.123.132
3 84.43.139.236
3 88.226.253.180
3 88.7.73.248
4 189.149.5.151
4 189.158.190.132
4 190.20.81.151
4 200.124.163.127
4 88.244.203.111
5 201.240.15.181
8 212.163.9.11
38 201.143.175.190
46 190.82.179.24
24537
85 % of this apache requests, are in TIME_WAIT state as:

Code:
tcp 0 0 ::ffff:SERVERIP:80 ::ffff:85.48.70.56:49910 TIME_WAIT
tcp 0 0 ::ffff:SERVERIP:80 ::ffff:81.44.96.178:10681 TIME_WAIT
tcp 0 0 ::ffff:SERVERIP:80 ::ffff:200.106.71.33:15028 TIME_WAIT
tcp 0 0 ::ffff:SERVERIP:80 ::ffff:200.106.71.33:15028 TIME_WAIT
tcp 0 0 ::ffff:SERVERIP:80 ::ffff:66.201.171.211:20470 TIME_WAIT
tcp 0 0 ::ffff:SERVERIP:80 ::ffff:81.37.198.134:29218 TIME_WAIT
tcp 0 0 ::ffff:SERVERIP:80 ::ffff:83.52.36.230:28849 TIME_WAIT
Also, dmesg shows this.

Code:
ip_conntrack: table full, dropping packet.
printk: 643 messages suppressed.
ip_conntrack: table full, dropping packet.
printk: 844 messages suppressed.
ip_conntrack: table full, dropping packet.
printk: 665 messages suppressed.
ip_conntrack: table full, dropping packet.
printk: 755 messages suppressed.
ip_conntrack: table full, dropping packet.
printk: 667 messages suppressed.
ip_conntrack: table full, dropping packet.
printk: 735 messages suppressed.
ip_conntrack: table full, dropping packet.
printk: 664 messages suppressed.
ip_conntrack: table full, dropping packet.
printk: 760 messages suppressed.
ip_conntrack: table full, dropping packet.
printk: 666 messages suppressed.
ip_conntrack: table full, dropping packet.
printk: 606 messages suppressed.
ip_conntrack: table full, dropping packet.
printk: 723 messages suppressed.
ip_conntrack: table full, dropping packet.
ip_tables: (C) 2000-2002 Netfilter core team
ip_conntrack version 2.1 (8192 buckets, 65536 max) - 340 bytes per conntrack
printk: 257 messages suppressed.
I already tried to ha handle this using: echo "65535" > /proc/sys/net/ipv4/ip_conntrack_max, but the problem stills.

Im using a plain redhat es 4 server, latest kernel-smp, apache 2.x with mod_evasive.

View 6 Replies View Related

Limit Connections - DDOS

Dec 14, 2008

one of my friend say that if i install an apache module which one limit the users conection can help me to protect from ddos.

becaus one of my users domain is under ddos and i think that if i limit his conection, if sombody wants to do ddos and open conection foraxample up 30 he is attacker and ban.

is it right and how i can do it and limit a one user?

View 6 Replies View Related

Limit Connections Per IP/Hostname

Aug 25, 2007

How is this done? from what I gether, there's nothing built into apache which can do this which I personally think is a bit silly as it seems like a common thing. Can anyone offer any help (for apache 2).

View 5 Replies View Related

Hitting Connections Per Second Limit Of RedHat EL

Jun 11, 2009

I have a powerful 8 core 8gb ram web server with scsi raid drives running RedHat EL 4. This server handles 2,000 - 3,000 HTTP requests per second via Litespeed httpd without strain (over 60%+ CPU idle time during peak load, under 1% IO wait). As the traffic volume continues to increase I've encountered a strange problem, the symptoms of which are as follows:

- About 1/4 or 1/3 of new connections are not answered by the server - they time out.

- All connections that are answered have exactly 3 seconds added to the time it takes to establish connection with the server (can be seen as "Connecting to ..." phase in FireFox). HTTP response times were tested by Pingdom from multiple locations all over the world.

- The problem is either "on" or "off", it is not gradual.

- Server ping is unaffected during the problem - no delay and no packet drops.

- The problem does not happen during off-peak hours of the day.

If litespeed httpd settings are tweaked to keep as many connections as possible in keepalive state for as long as possible, the problem is avoided, while tens of thousands of connections are kept in keepalive state.

Possible causes that were tested and eliminated: PHP/MySQL load (problem applies to static files exactly the same), CPU / IO / RAM, network uplink, hardware firewall, DNS.

This makes me think that there is some kind of bottleneck of how many NEW connections per second the server can accept. By maxing out keepalive quantity and duration I'm reducing the number of new connections per second. This is a temporary fix that will only work up to a certain point.

After investigation, litespeed staff verified that my litespeed configuration was correct and after some testing said that nothing in litespeed was responsible for this limiting factor. Litespeed process uses relatively little CPU and can definitely handle more volume.

Following sysctl.conf values were increased substantially to see if that will make a difference: tcp_max_syn_backlog, tcp_max_tw_buckets, tcp_max_orphans, netdev_max_backlog, somaxconn, file-max. This didn't produce any results. Disabling syncookies didn't help either. dmesg doesn't have any notices of limits being hit or throttles being applied.

Litespeed staff suggests that likely some limit in linux kernel is being reached. The strange 3 second delay does seem like an "intelligent" DDOS protection strategy of some sort. Perhaps this is some kind of kernel level DDOS protection?

View 9 Replies View Related

How To Limit Apache2 Global Per IP Connections

Jan 27, 2008

Some limit connection mods can limit max connections per vhost, any mod can limit connections to apache server per IP?

View 3 Replies View Related

Any Firewall For Windows To Limit Connections Per Ip

Apr 26, 2008

windows 2003

limit connections per ip to a port

im currently using routix netcom

it can limit the connections( NOT bandwidth) only but not per ip

another firewall which limit connections per ip

View 14 Replies View Related

Rule To Limit Apache (port 80) Connections From 1 IP To 15

Apr 12, 2007

any good rule to limit Apache (port 80) connections from 1 IP to 15 with iptables/csf?

And total connections to the box to 100?

View 6 Replies View Related

How To Limit Num Of Connections Per Hosted Site On Ded. Server

Jan 24, 2007

OS: Linux, on Apache 2.0
=======

Would you know and kindly tell me if there's a way to limit X number of connections per hosted site?

Because I don't want someone with high traffic forum unfairly stealing most connections for himself, which makes other sites suffer in performance.

View 1 Replies View Related

How To Limit Http/mysql Connections Per Domain

Jun 22, 2007

how i can limit http and mysql connection limit on per domain basis.

View 2 Replies View Related

Limit Apache (thread) Connections Per Request

Jan 9, 2007

I've been having trouble the past few days with someone who's been "attacking" my site so to speak by continuously downloading very large files with as many connections as (he) can open. I operate a large downloads site for computer games, this person has selected the largest files (like 400-500MB). Not sure of the real intent other than to clog up my bandwidth capacity. Also he appears to be using proxies since as soon as I ban one, another shows up seeminly from China.

Anyway, I have mod_bw and I've limited the number of connections in the downloads area to 2. While that works ok, his tool uses threads like a download manager would and he's using up 30-40 child threads for his 2 file downloads.

So 2 questions,

Is there anyway to not only limit file downloads to 2, but limit the number of connections per request? Many of my visitors do use download managers and I'd like for them to continue using them but use a reasonable number of threads like 6 or 8, but not 30.

Also, is there a way to restrict access to someone using a proxy?

View 2 Replies View Related

How To Limit Connections Per IP Address Based On Domain + String

Oct 25, 2009

I need to do this:

(1) domain1.com limit to 10 connections per IP per 30 seconds but allow if accessing file beginning with x.php such as x.php?981 x.php?o19

(2) domain2.com limit to 10 connections per IP per 30 seconds only if accessing file beginning with x.php but allow if accessing file beginning with y.php y.php?981 y.php?o19 .....

View 8 Replies View Related

Limited Or No Connectivity

Mar 11, 2008

im trying to remotely install WS2003 EE R2 on a dedicated server I have purchased and have an issue. I'm installing it via KVM IP which is cool

however, after installing the network card drivers, I get a "There is no or limited connectivity" etc... so I cannot access the internet or anything on that box.

what do I do from here? how can I make the card work? It is configured to obtain the IP Address automatically as well as using the default DNS. I do have 2 IP Addresses "assigned" to me/my account but dont believe I need to configure them in WS2003?

View 2 Replies View Related

Limited FTP Access

May 19, 2009

We have a developer doing some work for us and only want to allow them FTP access to the directory they are working on. How can this be accomplished? I am not sure how to limit ftp access to certain directories?

View 4 Replies View Related

FragSwitch Limited

Oct 1, 2008

I'm reading a lot of negative experiences here, and of course positive ones as well. When I was looking for a new company to host my website, I had some clear 'demands'.

I'll explain first, I am a player of the MMO EvE online [url] and I'm the CEO of a corporation in that game. For our corporation I wanted to create a portal from which to host all our out of game content. That content includes the usual forum, a killboard, a so called POS tracker, to keep track of fuel levels in our stations, a Shoutcast radio station to provide us with some added entertainment during our gaming, a webmail application to keep in touch with each other and last but not least a teamspeak server so we can chat.

Because it's quite a bit of stuff that I needed hosted and the bandwith some of it swallows up, especially the Shoutcast station that was something I had to look for. I was referred by one of our members to a UK company called FragSwitch Limited [url]. They've got several packages to choose from. I picked their "HARD" package that gives me 5Gb of webspace and 50Gb of traffic, plenty to suit our every need. It's a unlimited package where I can have as many of whatever I want, including e-mail addresses and subdomains. I like cPanel, so any host that uses it gets a plus from me anyway.

I've had my site hosted with them for 3 months now and haven't experienced any downtime, and since the server park is in the UK, lines to at least my country are short and fast, though I haven't heard any of our US based members complain.

So perhaps if you are looking for a complete host, you might wanna look them up, I give them a big thumbs up at least! They may not be the cheapest host out there, but they don't have to be, the service I got when I needed help to set up both my shoutcast and teamspeak servers was excellent and fast and that counts for much more to me.

View 10 Replies View Related

Limited Connection On VPS

Dec 3, 2007

Just wondering if anyone facing same problem like me on VPS.

i have a VPS which has 512 MB memory.

i'm hosting few sites on this VPS, and it does not allow more than 100 connection at a time. when i check apache it shows 100 connection, when i try to visit my site i cant.

So, is there any way i can make it more connection at a time?

View 5 Replies View Related

HydraHost A Limited Company?

Jul 11, 2008

Hydrya Host they are claiming they are a limited company. I have searched company house and no results show from there name. Anyone else seen this? I am in no connection but just saw there claiming it on the WHT signature.

View 4 Replies View Related

Limited BW On Virtual Host

Jan 11, 2008

i use Apache.

I want limit 50 GB Traffic on 1 Virtual Host.

How to?

View 1 Replies View Related

Hosting With Un(limited) Bandwidth

Sep 16, 2008

I've always used German hosts because they are much cheaper than my homeland Greek alternatives, the latency (70ms Germany vs 30ms Greece) is bearable.

Until recently I used Strato single cpu dedicated servers, which allowed me 2000gb at 100mb/s. Although I came close, I never actually reached that 2000gb allocation.

Ever since moving to 1und1 (to a quad core) the server's speed difference has attracted more visitors and pageviews. Now my bandwidth usage has gone to 3000gb per month and at peak it requires 20-30mb/s.

The problem is that 1und1 limits you to 10mb/s if you go over 1000gb, and then requires 'resetting' it every 250gb in order to get back to 100mb/s speed.

Does anyone know of a european host that offers truly unlimited bandwidth? Every time I hit the 10mb/s limit, my pageviews go down, users leave the site.

I've contemplated writing a simple heartbeat script that polls the control panel every 5 minutes and checks if the limit has been crossed, at which it will automatically reset it for me.

View 14 Replies View Related

MySQL Server (limited?)

Nov 22, 2007

I heard something about MySQL being a Open source type of software, it lacks certain features that the paid version of MySQL have. Is this true?

For web hosting companies which has MySQL DB, are they using the open source type or the paid version? Does anybody know?

And if they are using the paid version, who are those web hosting companies?

View 8 Replies View Related

Jarhosts Limited (Fraudulant Activity)

Jan 23, 2009

Last week, we received a letter [url] from Companies House (the UK entity which governs companies).

It was addressed to Exoware, with all the correct contact details, reminding me to submit statutory documents by a certain date or face a fine and/or prosecution.
It was sent to us, because apparently, Exoware is a director of Jarhosts limited. This is not true. We have never even heard of Jarhosts limited up to this point, but it appears they had ceased trading by the time we received the letter.

A few emails were exchanged between us and Companies House, which didn't really get us anywhere as they couldn't seem to understand our position, so I phoned them up myself. I got through to someone and explained our position and she informed me about the company and said they registered Exoware as a director of Jarhosts limited on 05/12/08 and they themselves promptly resigned from the company afterwards, so Exoware was the only remaining director.

After I declared that Exoware had no affiliation whatsoever with Jarhosts limited, she promptly forwarded the case to a department for dealing with fraudulent documents and said the company will dissolve soon and that we may hear from Companies House fraud department in the future.

So, my concerns are now at ease, but my curiosity still remains.

Does anybody know Jarhosts; how long they were around for, who they were owned by, or any relevant information about them? Or does anybody know of any reason that people would sign up a random business in the same industry as a director before bailing out of their own company? It all seems very obscure.

View 10 Replies View Related

RackUnlimited.com With Very Limited Connection Speed

Oct 16, 2009

I am using their RVPS-3 plan (30$/mo, 1024 MB RAM, 40 GB drive, 500GB BW) and I am pretty unhappy about the connection and response speeds of their servers - especially during traffic peaks in the US. The server is sometimes so slow that I have to wait 5-10 seconds for a simple HTML page to load. :/

However the hardware itself works fine and for the money is IMO a very good deal. Also tech support is fine, I've had 3 requests so far and all were solved almost immediately (<20 mins). Although during the setup stage they changed the OS WITHOUT letting me know due to installation of an admin panel. They quickly changed it back when I asked them, but it's pretty strange anyway.

It really is a pity that the connection speed is so bad, because other than that I couldn't say a bad word about them. Now I have to consider moving somewhere else...

View 12 Replies View Related

How To Create An FTP Account With Limited Access

May 27, 2008

I want to create a special FTP account as such:

- The user would only be able to view and upload to one directory, such as mysite.com/images/

- The user would only be able to upload .jpg files, no code/php/html or anything, just jpg pictures.

- There would be a limit of upload. (ie. only 50 MB of upload per day)

- The user would only be able to delete the files that he uploaded. (or the user would only be able to view the files he uploaded)

View 6 Replies View Related

Limited West Coast Providers

Nov 25, 2008

I was looking at the offer section and I found that there is limited choices for providers that is on the west coast. I am just looking for simple and cheap server to run on directadmin for my adult site but I can't seem to be able to find one. Anyone knows of any decent providers in the west?

View 5 Replies View Related

How Do I Create A User With Limited Permission

Oct 5, 2007

I used to create a user by using /usr/sbin/sysinstall in freebsd, but how do i limit that user so he can't view important files (like: dhcpd.conf, rc.conf....) or can't do such as command pico, nano, vi ...etc?

All i want is that user can log in to my freebsd box and then he will ssh to other local servers, I just want my freebsd box is a bridge/gate for him to ssh to local servers which behind that freebsd box. Is it possible ?Thanks.

I know that i have to create a group with has only ssh permission but how do i do that?

View 2 Replies View Related

Limited Versus Unlimited Bandwidth

Dec 12, 2007

I am having trouble working out which host to choose for a new project.

I usually opt for Webmania or Heart Internet - they are excellent providers but Webmania now applies a bandwidth cap that may be too low and Heart's cheapest package does not provide sub-domains. I can't be sure whether 12GB will be big enough for a site that will contain galleries of high-res images (I have no prior experience with caps and traffic predictions are impossible at this time) and to get sub-domains from Heart means a £90 per year package (too much).

Streamline is one of the few good-value providers that do not cap bandwidth, but I have concerns about the effect that this may have on server speed given that it is bound to attract the kind of sites that are really heavy on bandwidth. This point was mentioned in an article recently.

If I take the last option, will I be hampering the performance of my site?

View 15 Replies View Related

How Do I Give Limited Access To Linux Users

Feb 24, 2008

I have taken over management of a bunch of a dedicated servers and have a question.

What are the commands on Linux (RedHat, RHL) for giving a User access rights to a directory(ies) only.

So that this user can FTP and Telnet to the server but will be able to:

1- only upload files to these directory(ies)

2- only delete files/dirs from these directory(ies)

3- only execute programs residing in these directory(ies)

View 3 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved