Timeline



10/11/16:

21:38 Ticket #215 (SSL: decryption failed or bad record mac with upstream servers) reopened by shifty35@…
I'm experiencing this same issue again using the latest nginx (1.11.5) …
21:32 Ticket #1102 (keepalive_requests is not supported for HTTP/2 connections) created by hwyuan@…
Looks like the limit of keepalive_requests is not supported for …
20:21 Ticket #1101 (nginx does not respond to SIGHUP/SIGUSR2) updated by Maxim Dounin
Replying to tiandrey@…: > >Try looking into logs to see …
19:30 Ticket #1101 (nginx does not respond to SIGHUP/SIGUSR2) updated by tiandrey@…
>Try looking into logs to see why this happened. Other lines from the …
16:55 Ticket #1101 (nginx does not respond to SIGHUP/SIGUSR2) updated by Maxim Dounin
The "ps" output config suggests that at least one worker process …
16:12 Ticket #1101 (nginx does not respond to SIGHUP/SIGUSR2) created by tiandrey@…
We have nginx installed on frontend servers; the configuration is …
15:23 Milestone 1.11.5 completed
Status: released Trunk: mainline * stream: input filters * …
12:32 Ticket #1100 (Socket leakage after ngx_http_read_client_request_body) closed by Maxim Dounin
invalid: This is due to a bug in the module provided.
09:10 mod_test_wait_ngx.tar.bz2 attached to Ticket #1100 by Dmitry Utkin
module to reproduce the WAIT_CLOSE problem
09:09 Ticket #1100 (Socket leakage after ngx_http_read_client_request_body) created by Dmitry Utkin
When handling POST request from module and …

10/10/16:

16:33 Ticket #860 (NGINX 1.9.9 fails to build against OpenSSL 1.1.0) updated by Maxim Dounin
The list looks correct to me. Note though that removing default DH is …
14:20 Ticket #860 (NGINX 1.9.9 fails to build against OpenSSL 1.1.0) updated by ctrochalakis@…
Hello, The new Debian stable (stretch) will ship with OpenSSL 1.1.0, …
12:25 Ticket #826 (Add config option for NGX_HTTP_CACHE_VARY_LEN) updated by Anders Carling
Normal browsers might not be the only clients accessing that url …

10/08/16:

07:45 Ticket #1099 (proxy_http_version 1.1 is ignored for incoming https request) updated by progman97@…
This is strange: I had kept the "SitesEnabled/default" file open in …
00:24 Ticket #1099 (proxy_http_version 1.1 is ignored for incoming https request) closed by Maxim Dounin
invalid: The only place where proxy_http_version is specified is the …

10/07/16:

18:47 Ticket #1099 (proxy_http_version 1.1 is ignored for incoming https request) updated by progman97@…
Maybe the fact the incoming request is https but it is forwarded as …
18:21 Ticket #1099 (proxy_http_version 1.1 is ignored for incoming https request) reopened by progman97@…
Please look again, it is there: location /datasets { # …
16:46 Ticket #1096 (dav_access user:r is not respected) closed by Maxim Dounin
fixed: Fix committed, thanks.
16:25 Ticket #1096 (dav_access user:r is not respected) updated by Maxim Dounin <mdounin@…>
In [changeset:"1606a817c1d48ed351f1dd7d9cb9c996e2c77b9a/nginx"
14:25 Ticket #1099 (proxy_http_version 1.1 is ignored for incoming https request) closed by Maxim Dounin
invalid: You configuration does not have proxy_http_version directive in the …
14:18 default attached to Ticket #1099 by progman97@…
14:18 Ticket #1099 (proxy_http_version 1.1 is ignored for incoming https request) created by progman97@…
I have the same proxy settings for the http and the https server …
11:45 Ticket #1095 (nginx crashed) updated by Valentin V. Bartenev
Replying to bobykus@…: > I am very sure nginx does not …
11:15 Ticket #1095 (nginx crashed) updated by bobykus@…
I am very sure nginx does not have any 3rd party modules compiled in …

10/06/16:

20:21 Ticket #1098 (realip_remote_addr overwritten) closed by Maxim Dounin
fixed: Committed, thanks for testing.
20:20 Ticket #1098 (realip_remote_addr overwritten) updated by Maxim Dounin <mdounin@…>
In [changeset:"cecf415643d749acba3838b1b4ca7cdf8ee9edca/nginx"
18:45 Ticket #1098 (realip_remote_addr overwritten) updated by vladimir.golovin00@…
Works fine, thanks!
18:15 Ticket #1098 (realip_remote_addr overwritten) updated by Maxim Dounin
Status changed
Thanks for reporting this. Please try the following patch: […]
17:52 Ticket #1097 (Nginx worker process exited on signal 11) updated by Maxim Dounin
Please provide output of the following gdb commands: […] Please …
17:41 Ticket #1097 (Nginx worker process exited on signal 11) updated by Maxim Dounin
Description changed
17:26 Ticket #1098 (realip_remote_addr overwritten) created by vladimir.golovin00@…
Hello, I noticed that $real_remote_addr gets overwritten when the …
16:55 Ticket #1097 (Nginx worker process exited on signal 11) created by adushein.sports.ru@…
I have 2 nginx frontends worked in load balancing mode. Today, around …
16:12 Ticket #1096 (dav_access user:r is not respected) updated by Maxim Dounin
Status changed
Confirmed, ngx_conf_set_access_slot() unconditionally set access …
13:54 Ticket #826 (Add config option for NGX_HTTP_CACHE_VARY_LEN) updated by Maxim Dounin
All FT-* headers seems to be useless, as they are never sent by …
13:07 Ticket #1091 (Add missing client certificate field variables) updated by Maxim Dounin
These individual components are almost never used AFAIK, and …
10:27 Ticket #1091 (Add missing client certificate field variables) updated by Neil Craig
Thanks @mdounin, that's good to know - I made a wrong assumption. It …
09:37 Ticket #826 (Add config option for NGX_HTTP_CACHE_VARY_LEN) updated by Neil Craig
By way of adding weight to this, I just noted that the new www.ft.com …
04:00 Ticket #824 (NGINX returning 404 on proxy timeout instead of 504 when request is a POST) updated by patrick.robinson.envato.com@…
> Though in this case nginx only does what it is configured to do, and …
00:22 Ticket #1096 (dav_access user:r is not respected) created by bjacquin@…
Hi, Configuration including 'dav_access user:r' is not respected, …

10/05/16:

15:39 Ticket #826 (Add config option for NGX_HTTP_CACHE_VARY_LEN) updated by avengerpenguin@…
Yes, I hit this too in production. We added one more header to the …
13:32 Ticket #1095 (nginx crashed) updated by Maxim Dounin
Please try to reproduce the problem without any 3rd party modules …
12:57 Ticket #1095 (nginx crashed) created by bobykus@…
Server crashing periodically tail -f /var/log/nginx/error.log | grep …
06:05 Ticket #1094 (CRL check for Estonian ID cards fails) reopened by edgars.buss.optibet.lv@…
05:49 Ticket #1094 (CRL check for Estonian ID cards fails) updated by edgars.buss.optibet.lv@…
The message is saying wrong. As I have checked and tested multiple …
02:10 Ticket #1070 (nginx with NJS compile error) updated by joaoarquimedes@…
Thanks, without stream options it works. But with "--with-stream" it …

10/04/16:

17:30 Ticket #394 (gzip module doesn't handle all certain HTTP verbs/statuses) updated by caldavtest@…
Can I somehow help in getting this done?
12:40 Ticket #1094 (CRL check for Estonian ID cards fails) closed by Maxim Dounin
worksforme: The message suggests CRLs for some of the certificates in the chain …
09:41 Ticket #1000 (Domain-relative redirects doesn't work, they are absolute instead) updated by zakjan@…
These vars can change quite often in cloud environment. It would be …
08:23 Ticket #1094 (CRL check for Estonian ID cards fails) created by edgars.buss.optibet.lv@…
Nginx CRL for Estonian ID card fails with error: […] Relevant …

10/03/16:

17:38 Ticket #1088 (Add variable $ssl_dhe (possible values: curve name or dh<keylength>, ...) updated by Darkudorus@…
https://github.com/openssl/openssl/issues/1656
09:46 Ticket #1093 (Support http_429 in *_cache_use_stale) created by tvdavid@…
Use case: we use nginx with fastcgi_cache to cache responses from a …

10/01/16:

12:10 Ticket #1092 (virtal host attacks: Limit Host header to CN/DNS-Name of currently ...) closed by Maxim Dounin
invalid: As long as you, as a client, request a virtual server different from …
11:49 Ticket #1092 (virtal host attacks: Limit Host header to CN/DNS-Name of currently ...) updated by Darkudorus@…
Please edit the first word in the ticket name to "virtual".
11:47 Ticket #1092 (virtal host attacks: Limit Host header to CN/DNS-Name of currently ...) updated by Darkudorus@…
I have forgotten to mention, that certificate A only has …
11:42 Ticket #1092 (virtal host attacks: Limit Host header to CN/DNS-Name of currently ...) created by Darkudorus@…
I have read https://bh.ht.vc/vhost_confusion.pdf (read it, it's …

09/30/16:

19:35 Ticket #1089 (ssl_ecdh_curve not honored in server block) updated by Darkudorus@…
Okay, thank you! https://github.com/openssl/openssl/issues/1652
19:19 Ticket #1089 (ssl_ecdh_curve not honored in server block) closed by Maxim Dounin
wontfix: Replying to Darkudorus@…: > Do you have connections to the …
17:28 Ticket #1089 (ssl_ecdh_curve not honored in server block) updated by Darkudorus@…
Do you have connections to the OpenSSL project / the ability to report …
14:20 Ticket #1091 (Add missing client certificate field variables) updated by Maxim Dounin
C, L, O, and OU - are included in DN, as they are compontents of DN. …
13:46 Ticket #1091 (Add missing client certificate field variables) created by Neil Craig
Hi We make pretty extensive use of client cert auth and it'd be …
13:30 Ticket #417 (ngx_cache_purge) updated by Neil Craig
+1 on this
13:24 Ticket #870 (Add variable containing list of client-supported cipher suites) updated by Neil Craig
I'd like to add a +1 to this :-)
13:21 Ticket #1057 (Google QUIC - statement) updated by Neil Craig
FWIW I'd be very interested in looking at QUIC support, especially as …
13:00 Ticket #1089 (ssl_ecdh_curve not honored in server block) updated by Maxim Dounin
Looks like a bug in OpenSSL. It copies curves to the connection from …
08:59 Ticket #1090 (try_files with map variable works differently in 1.10.x and 1.11.x) updated by Pyry Hakulinen
Our builds have lua (and other custom modules), but the internal …
08:47 nginx-1.11.4-debug-log attached to Ticket #1090 by Pyry Hakulinen
08:46 nginx-1.10.1-debug-log attached to Ticket #1090 by Pyry Hakulinen
08:46 Ticket #1090 (try_files with map variable works differently in 1.10.x and 1.11.x) created by Pyry Hakulinen
Following config: […] /tmp/nginx/index.html […] On 1.11.x …

09/29/16:

19:06 Ticket #1089 (ssl_ecdh_curve not honored in server block) created by Darkudorus@…
http { ssl_ecdh_curve secp521r1; server { listen ... ssl http2 …
17:53 Ticket #1088 (Add variable $ssl_dhe (possible values: curve name or dh<keylength>, ...) updated by Maxim Dounin
Milestone changed
Not sure if it's at all possible from server point of view. Recent …
16:55 Ticket #1088 (Add variable $ssl_dhe (possible values: curve name or dh<keylength>, ...) created by Darkudorus@…
It would be helpful to monitor the use of curves (with ECDHE) or the …
14:59 Ticket #1087 (System crashes that were solved by increasing server_names_hash_max_size) closed by Maxim Dounin
invalid: The message from the kernel suggests you are facing either a hardware …
12:49 Ticket #1087 (System crashes that were solved by increasing server_names_hash_max_size) created by langemeijer@…
Since a couple of months I had some system crashes that I had no …

09/28/16:

17:40 Ticket #1086 (Connection failure on upstream health check repeatedly reports at ...) closed by Sergey Budnevitch
invalid: This is a bug tracker for opensource nginx, so I'm closing this …
17:29 Ticket #1086 (Connection failure on upstream health check repeatedly reports at ...) created by mpawelsk@…
If a server is hard down (no connectivity/connection refused) then …
08:43 Ticket #1085 (multiple calls to make install from a read-only source fails to copy ...) created by stackoverflow.com/users/324204/sogartar
Let's say you have the source of nginx and it is read-only. Doing …

09/26/16:

14:51 Ticket #1083 (Enable gzip compression only for non "text/html" content) updated by sustmi@…
I am struggling with the Nginx code base a bit (I did not program in C …
14:17 Ticket #1084 (Override previous access_log settings) created by cweiske
I would like to be able to override the access_log setting via …
06:20 Ticket #1081 (ngx_stream_core_module proxy_pass dynamic resolve) updated by Watson Yim
Hi mdounin, Thanks for your help! …

09/24/16:

17:14 Ticket #1083 (Enable gzip compression only for non "text/html" content) updated by sustmi@…
I'll write a patch for this if you do not think it is a bad idea. :)
17:05 Ticket #1083 (Enable gzip compression only for non "text/html" content) created by sustmi@…
I want to enable gzip HTTP (ngx_http_gzip_module) compression but only …

09/23/16:

15:50 Ticket #1081 (ngx_stream_core_module proxy_pass dynamic resolve) closed by Maxim Dounin
invalid: In stream, there is no set directive, but there are other ways to …
11:17 Ticket #1082 (rpmlint issues centos7) updated by thresh
Status, Owner changed
08:47 Ticket #1082 (rpmlint issues centos7) created by mjtrangoni@…
It would be nice if soumeone could fix those warnings. $ rpmlint …

09/22/16:

23:01 Ticket #1081 (ngx_stream_core_module proxy_pass dynamic resolve) created by Watson Yim
Hi NGINX team, Awesome work with the TCP reverse proxy! Keep it up! …
22:39 Ticket #1080 (README.dynamic shows wrong include path) closed by Maxim Dounin
invalid: EPEL packages are maintained by EPEL team, this is a wrong place to …
20:44 Ticket #1080 (README.dynamic shows wrong include path) created by ksemande@…
-include /usr/lib64/nginx/modules/*.conf; +include …
12:51 Ticket #1079 (ngx_stream_log_module mismatch variable in documentation) closed by Yaroslav Zhuravlev
fixed
12:46 Ticket #1079 (ngx_stream_log_module mismatch variable in documentation) updated by Yaroslav Zhuravlev
Thank you, fixed: http://hg.nginx.com/nginx.org/rev/19eb203ffd41
11:20 Ticket #1079 (ngx_stream_log_module mismatch variable in documentation) created by ppppggg@…
http://nginx.org/en/docs/stream/ngx_stream_log_module.html

09/21/16:

21:01 Ticket #859 (-lpcre should preceed -lpthread in objs/Makefile) updated by Maxim Dounin
The -lpthread parameter as seen in the build is added for POSIX …
20:31 Ticket #1030 (100% CPU with hash consistent balancing method without live upstreams) updated by Maxim Dounin
Probably most simple solution would be to just limit number of tries …
18:51 Ticket #1030 (100% CPU with hash consistent balancing method without live upstreams) updated by Maxim Dounin
Replying to savetherbtz@…: > Shouldn't hash module have …
17:54 Ticket #1030 (100% CPU with hash consistent balancing method without live upstreams) updated by Alexey Ivanov
Shouldn't hash module have something like this in case all upstreams …
16:30 Ticket #633 (limit_except causes 404) updated by Maxim Dounin
This is basically identical to the same problem with if, see #86.
16:30 Ticket #86 (the "if" directive have problems in location context) updated by Maxim Dounin
See also #633, which is basically identical to the same problem with …
16:19 Ticket #982 (nginx with perl_module is not going) closed by Maxim Dounin
invalid: Using custom compilation options should be done with care, it can …
16:01 Ticket #996 (nginx memory leak) closed by Maxim Dounin
worksforme: Feedback timeout, likely a 3rd party module problem.
15:57 Ticket #1013 (problem on restart nginx) closed by Maxim Dounin
worksforme: From the description it looks like a problem with resource shortage, …
15:51 Ticket #1028 (Build failure on debian-kbsd) closed by Maxim Dounin
worksforme: Feedback timeout. As previously suggested, this looks like a problem …
15:49 Ticket #1031 (nginx return 416 error if client set Range header and requested file < ...) closed by Maxim Dounin
invalid: Feedback timeout.
15:18 Ticket #1076 (client_max_body_size has no effect with ssl configured) closed by Maxim Dounin
invalid: Closing this, update on stackoverflow confirms that the problem is not …
14:21 Ticket #1075 (Add german book to website) closed by igor
fixed
14:13 Ticket #1075 (Add german book to website) updated by igor
Done, thank you!

09/16/16:

15:11 Ticket #1078 (FastCGI stderr gets split into two lines) closed by Maxim Dounin
wontfix: Stderr records are logged once they received, no attempts to preserve …
14:51 Ticket #1077 ([1.11.4_1] error_log location not respected) closed by Maxim Dounin
duplicate: The compiled-in error log is used during configuration parsing (before …
14:02 log-output.txt attached to Ticket #1078 by blodan@…
14:01 Ticket #1078 (FastCGI stderr gets split into two lines) created by blodan@…
Hi! Sometimes we have quite big stack-traces being sent from php-fpm …
10:49 Ticket #1070 (nginx with NJS compile error) closed by Roman Arutyunyan
fixed: Fixed, thanks. http://hg.nginx.org/njs/rev/16cc1aaf4e47

09/15/16:

19:22 Ticket #1077 ([1.11.4_1] error_log location not respected) updated by serge-vk@…
When nginx is started for the first time after upgrade to 1.11.4_1, …
19:14 Ticket #1077 ([1.11.4_1] error_log location not respected) created by serge-vk@…
Since the update from 1.11.3 to 1.11.4_1, Nginx does not respect …
17:56 Ticket #1076 (client_max_body_size has no effect with ssl configured) updated by Maxim Dounin
Please provide full configuration as shown with "nginx -T". Please …
14:17 Ticket #1076 (client_max_body_size has no effect with ssl configured) created by kuceram@…
When I set client_max_body_size 30m; without ssl everything works …
12:16 nginx_richtig_konfigurieren.jpg attached to Ticket #1075 by captain-digitalsailors@…
Book cover
12:16 Ticket #1075 (Add german book to website) created by captain-digitalsailors@…
I am the author of the german book: "Nginx richtig konfigurieren" …

09/13/16:

22:45 Ticket #1074 (proxy_set_header Authorization not working) closed by Maxim Dounin
invalid
20:43 Ticket #1074 (proxy_set_header Authorization not working) updated by wolfgang.grim@…
I found the solution immediately after filing this ticket. echo also …
20:25 Ticket #1074 (proxy_set_header Authorization not working) created by wolfgang.grim@…
I try to pass an Authorization header to a backend proxy with the …
17:05 Ticket #178 (listen with ssl but missing ssl_certificate is not detected by nginx -t) updated by Maxim Dounin
See also #1073.
17:05 Ticket #1073 (no "ssl_certificate" is defined in server listening on SSL port while ...) closed by Maxim Dounin
duplicate: Duplicate of #178.
16:21 Ticket #1073 (no "ssl_certificate" is defined in server listening on SSL port while ...) created by daniel.platt@…
If I specify listen 80 ssl; , then whenever I try to access a …
16:06 Ticket #1066 (ngx_http_parse: query seperator bug (missing W3C recommended support ...) updated by maxim
Milestone changed
Ticket retargeted after milestone closed
16:05 Milestone 1.11.4 completed
Status: released Trunk: mainline * stream: access_log * …

09/12/16:

12:36 Ticket #1072 (Overflow in ngx_atosz with Visual Studio 2013 in 64bit system) created by ansarhun@…
When I was trying to set Content-Length header from lua, I got an …
09:50 Ticket #1071 (space H in curl request return 400 bad request from nginx) closed by Valentin V. Bartenev
duplicate: Duplicate of #196.
Note: See TracTimeline for information about the timeline view.