OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: (fwd) Soft rlimit preferred to hard

From: Wietse Venema (wietseporcupine.org)
Date: Tue Apr 22 2003 - 13:10:28 CDT


Wesley W. Terpstra:
> On Tue, Apr 22, 2003 at 07:16:58AM -1000, Clifton Royston wrote:
> > > I agree that the comments describing it are fine. I am just advocating the
> > > ability to be able to have a soft limit without a hard limit. The hard limit
> > > just prevents legitamite users from getting work done whereas evil users can
> > > still do as they will.
> >
> > How's that? If you are dealing with a process launched with a preset
> > hard filesize limit, I don't see how a user, "evil" or otherwise, can
> > readily circumvent that. Isn't that the problem? Of course all kinds
> > of other DOSes are possible outside the scope of Postfix, but I don't
> > see that as relevant.
>
> You can avoid the hard limit by remapping io via LD_PRELOAD.

Instead of writing a large file, writing a lot of small ones.
That is what maildir does already :-)

        Wietse