Skip to content

Security: Protect against slow-loris attacks via WebSockets & gRPC #1052

@samsp-msft

Description

@samsp-msft

Web sockets should be disabled by default as they don't have limits on connection time or throughput, so can be used as the basis for a slow-loris attack.

Metadata

Metadata

Assignees

Labels

Type: FeedbackThis issue is general feedback and doesn't represent actionable work.

Type

No type

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions