This, if done maliciously, is a valid DOS attack vector known as Slowloris/SlowPost attacks.
I know it’s easier said than done, but there should be active mitigation in place, rather than only monitoring.
I know it’s easier said than done, but there should be active mitigation in place, rather than only monitoring.