fork-bombs still possible?

Asked by Mr. Captcha

It seems that there is no limit for "max user processes" by default. So Fork-Bombs [1] are still possible. They are used by M$-Junkies to show that there are still problems with linux. Please fix it in /etc/security/limits.conf by default.

[1] http://en.wikipedia.org/wiki/Fork_bomb

Question information

Language:
English Edit question
Status:
Answered
For:
Ubuntu Edit question
Assignee:
No assignee Edit question
Last query:
Last reply:
Revision history for this message
Bernhard (b.a.koenig) said :
#1

Maybe this should be filed as a bug...

Revision history for this message
A. Denton (aquina) said :
#2

The thing with limits is known to us for a long time now, but it requires more than a Wikipedia article to discuss that in detail.

Furthermore the problem with limiting is that every single user has different demands which each must be satisfied seperately. Ther is no "fits-all-needs" configuration regarding limits.conf. Additionally even strict limits will not solve the problem with fork bombing in general. You need to secure your system on a different layer first.

In case you run a server you can/should adjust your limits at least a bit. I advise you to excessively test your configuration though.

Revision history for this message
A. Denton (aquina) said :
#3

Is the problem yet solved?

Revision history for this message
A. Denton (aquina) said :
#4

Unfortunately I do not have the powers to change the state of this question to SOLVED, EXPIRED or INVALID. Someone here at Launchpad either grant me that permission or simply apply the change in state to this question, please.

Can you help with this problem?

Provide an answer of your own, or ask Mr. Captcha for more information if necessary.

To post a message you must log in.