[Owasp-leaders] Fwd: Pingdom Alert: Incident #6 for OWASP (www.owasp.org), has been assigned to you.

Matt Tesauro mtesauro at gmail.com
Sun Jan 25 17:31:37 UTC 2015


That was for a couple of minutes while I was disabling PHP's APC cache.

It appears that as of PHP 5.5.x, Opcache is the preferred caching mechanism
over APC for MediaWiki:
http://www.mediawiki.org/wiki/Manual:Cache

So APC was turned off and Opcache was turned on.

One IP in particular was crawling/scraping the wiki very aggressively and
was causing PHP processes to hand for ~ 1 hour in the APC caching code of
MediaWiki:

PHP Warning:  apc_store(): GC cache entry
'wiki:diff:version:1.11a:oldid:177361:newid:188495' was on gc-list for 3601
seconds in /var/www/wiki/includes/objectcache/APCBagOStuff.php on line 62

I've banned that IP address temporarily and have turned off APC caching to
remove the errors above. Apache/PHP errors are now quiet with the exception
of the occasional poorly written client:

AH02031: Hostname www.owasp.org provided via SNI, but no hostname provided
in HTTP request

Cheers!

--
-- Matt Tesauro
OWASP WTE Project Lead
*https://www.owasp.org/index.php/OWASP_Web_Testing_Environment_Project
<https://www.owasp.org/index.php/OWASP_Web_Testing_Environment_Project>*
http://AppSecLive.org - Community and Download site
OWASP OpenStack Security Project Lead
https://www.owasp.org/index.php/OWASP_OpenStack_Security_Project

On Sun, Jan 25, 2015 at 10:53 AM, psiinon <psiinon at gmail.com> wrote:

> Going to owasp.org I now just see:
>
> [5ba65f75] 2015-01-25 16:52:59: Fatal exception of type MWException
>
> :(
>
> ---------- Forwarded message ----------
> From: <alert at pingdom.com>
> Date: Sun, Jan 25, 2015 at 4:51 PM
> Subject: Pingdom Alert: Incident #6 for OWASP (www.owasp.org), has been
> assigned to you.
> To: psiinon at gmail.com
>
>
> Hi Simon Bennetts,
>
> This is a notification sent by Pingdom.
>
> Incident 6, OWASP (www.owasp.org),
> has been assigned to you.
>
> Log in to your account at https://my.pingdom.com/ to acknowledge, see
> further details and take
> the necessary actions.
>
>
> Best regards,
> The Pingdom Team
>
>
>
>
>
> --
> OWASP ZAP <https://www.owasp.org/index.php/ZAP> Project leader
>
> _______________________________________________
> OWASP-Leaders mailing list
> OWASP-Leaders at lists.owasp.org
> https://lists.owasp.org/mailman/listinfo/owasp-leaders
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.owasp.org/pipermail/owasp-leaders/attachments/20150125/f0c539dc/attachment-0001.html>


More information about the OWASP-Leaders mailing list