mirror of
https://git.haproxy.org/git/haproxy.git/
synced 2026-02-07 10:21:41 +01:00
SSL connections take a huge amount of memory, and unfortunately openssl does not check malloc() returns and easily segfaults when too many connections are used. The only solution against this is to provide a global maxsslconn setting to reject SSL connections above the limit in order to avoid reaching unsafe limits.