[users@httpd] Qualys Full Standard Community Scan, Requires Login not qualys SSL Labs quick scan, Causes 100% CPU - 2.4.37 & 2.4.38 w/openssl_1.1.1a and 2.4.41 w/openssl-1.1.1c

2019-09-10 Thread Robert Hathaway
Qualys: Scanner Appliance: 64.39.99.243 (Scanner 11.5.21-1, Vulnerability Signatures 2.4.694-2) Our production apache http 2.4.37 server running with openssl 1.1.1a have been getting hit with qualys scans like clockwork and every time our CPU goes to 100% and after more scans to 200% CPU. Afte

Re: [users@httpd] protect apache to stop work if logdir is missing

2019-09-10 Thread @lbutlr
On Sep 10, 2019, at 3:39 AM, Anton Gorlov wrote: > 10.09.2019 5:09, @lbutlr пишет: >> On Sep 9, 2019, at 11:21 AM, Anton Gorlov wrote: >>> I need to provide users with the ability to archive logs on their own >> Yes? And? You’ve been told two ways to do this that do not require modifying >> the

Re: [users@httpd] protect apache to stop work if logdir is missing

2019-09-10 Thread Anton Gorlov
10.09.2019 5:09, @lbutlr пишет: On Sep 9, 2019, at 11:21 AM, Anton Gorlov wrote: I need to provide users with the ability to archive logs on their own Yes? And? You’ve been told two ways to do this that do not require modifying the source code. pipe logs to some script/program and??? --