Quantcast
Channel: Ignite Realtime : Discussion List - All Communities
Viewing all articles
Browse latest Browse all 10742

Security Issue: Uncontrolled Resource Consumption with XMPP-Layer Compression

$
0
0

http://xmpp.org/resources/security-notices/uncontrolled-resource-consumption-wit h-highly-compressed-xmpp-stanzas/

 

Any insight how to mitigate this issue on older servers? Reportedly, Openfire 3.9.2 resolves this issue, but it doesn't appear to be downloadable to the public.

 

It's also reportedly recommended to disable XMPP Compression. I found the xmpp.client.compression.policy setting (http://community.igniterealtime.org/docs/DOC-1061), but I don't know if this is a solution or not. It's not a property by default in our System Properties, and I figured I'd ask before tinkering.

 

Thank you,

Justin


Viewing all articles
Browse latest Browse all 10742

Trending Articles