I'm thinking PHP's built in request size limit config items (e.g. post_max_size) will prevent this from being an issue too. Might not stop this bug if the URL is in a header though.
I'm thinking PHP's built in request size limit config items (e.g. post_max_size) will prevent this from being an issue too. Might not stop this bug if the URL is in a header though.
A 4GB request is a very large amount of data indeed.
A beefy server should be able to process 4GB of data within 30 seconds though I suppose.
If I recall correctly, max_input_time includes time taken to copy the file to the tmp directory and to parse the file for metadata, but not the upload time either (it does start prior to max_execution_time though). This value is set to -1 by default meaning it uses the value from max_execution_time instead.
You're more likely to run into Apache, Nginx, or PHP FPM timeouts. I can't remember exactly which timeout, but I remember there is one in Apache or FPM that is affected by upload time.
I'll call it exceptional when it can encode any real-drive-size repeated-character file into the size of a tweet.
$ getconf ARG_MAX
2097152
It's driven by some formula related to max stack size (ulimit -Ss), but capped at 6 MiB.