Uploaded image for project: 'Ivy'
  1. Ivy
  2. IVY-854

Evil behavior form resolve latest.status: performs DOS attacks

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • 2.0.0-beta-2
    • 2.0-RC1
    • Core
    • None
    • windows xp sp2, linux fedora core 9, running Ivy repository through http for remote resolving and Hudson CI server (publishing to the repo).

    Description

      Ivy is extremely aggressive towards repositories . This can result in
      resolving fails, even towards a healthy repository.

      The symptom:

      [ivy:resolve] 01-07-2008 13:16:24
      org.apache.commons.httpclient.HttpMethodDirector executeWithRetry
      [ivy:resolve] INFO: I/O exception (java.net.BindException) caught when
      processing request: Address already in use: connect.

      In effect this happens when Ivy has performed a successfully DOS attack against the repository.

      This is especially a problem when having large repositories (lost of revisions) and resolve against latest.status -> as this will fetch ivy.xml md5 and sha1 files for every revision.

      Attachments

        Issue Links

          Activity

            People

              maartenc Maarten Coene
              halu Hans Lund
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: