[SRU to impish] Mitigate KNS load on KDE servers
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
plasma-discover (Ubuntu) |
New
|
Undecided
|
Unassigned | ||
Impish |
Fix Released
|
Undecided
|
Unassigned |
Bug Description
See: https:/
Dear distributors,
In the last few days, we have been looking into mitigating the impact
of Discover against certain KDE web services.
Some of the problems can be addressed in the service itself but not
them entirely, so it would be useful if the following changes were
backported into your own packaging. We have already included it in our
stable branches but on the distributions that ship unsupported
versions of our software it would be useful you can apply these
patches.
https:/
https:/
https:/
https:/
If you feel unsure about the patch on a specific branch, feel free to
contact me here or in private and I will backport it if necessary.
Impact]
* Effectively a DDOS on some KDE servers that were not intended to take this traffic
[Test Plan]
* Test that Discover functions normally with the changes. e.g. KNS, packagekit, snap backends work as intended.
[Where problems could occur]
* Could fail to fetch resources, crash etc. It will need to be tested with a reasonable sample of these that this does not happen.
Changed in plasma-discover (Ubuntu Impish): | |
status: | New → In Progress |
tags: |
added: verification-done verification-done-impish removed: verification-needed verification-needed-impish |
Hello Rik, or anyone else affected,
Accepted plasma-discover into impish-proposed. The package will build now and be available at https:/ /launchpad. net/ubuntu/ +source/ plasma- discover/ 5.22.5- 0ubuntu1. 1 in a few hours, and then in the -proposed repository.
Please help us by testing this new package. See https:/ /wiki.ubuntu. com/Testing/ EnableProposed for documentation on how to enable and use -proposed. Your feedback will aid us getting this update out to other Ubuntu users.
If this package fixes the bug for you, please add a comment to this bug, mentioning the version of the package you tested, what testing has been performed on the package and change the tag from verification- needed- impish to verification- done-impish. If it does not fix the bug for you, please add a comment stating that, and change the tag to verification- failed- impish. In either case, without details of your testing we will not be able to proceed.
Further information regarding the verification process can be found at https:/ /wiki.ubuntu. com/QATeam/ PerformingSRUVe rification . Thank you in advance for helping!
N.B. The updated package will be released to -updates after the bug(s) fixed by this package have been verified and the package has been in -proposed for a minimum of 7 days.