mirror of
https://git.haproxy.org/git/haproxy.git/
synced 2026-01-09 19:01:01 +01:00
SSL connections take a huge amount of memory, and unfortunately openssl does not check malloc() returns and easily segfaults when too many connections are used. The only solution against this is to provide a global maxsslconn setting to reject SSL connections above the limit in order to avoid reaching unsafe limits.