Comment 5 for bug 1098307

Revision history for this message
Dan Prince (dan-prince) wrote : Re: unauthenticated POST to /tokens can fill up disk/logs

@ttx: yes. I think it would. I can also look at backporting it there...

----

Also, in addition to these patches I would like to go ahead and put in a 'size_limit' middleware (same thing we did in Nova) to guard against really large requests in Keystone in general. Any issues with me pushing that patch separately upstream (outside of the scope of thise security issue)?