#httpd — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #httpd, aggregated by home.social.
-
After the OpenSMTPD article, I am now working on an article to uncover the things that #httpd on #OpenBSD has to offer. Yes, it does not have all the features of #nginx, but still it can do a lot.
Want to know when the article is available? Follow the RSS feed on https://bsd-audit.com/ or follow me here.
If you are using httpd a lot, then a question for you: what are the tips that those new to OpenBSD and httpd should know? Why httpd and not nginx?
-
After the OpenSMTPD article, I am now working on an article to uncover the things that #httpd on #OpenBSD has to offer. Yes, it does not have all the features of #nginx, but still it can do a lot.
Want to know when the article is available? Follow the RSS feed on https://bsd-audit.com/ or follow me here.
If you are using httpd a lot, then a question for you: what are the tips that those new to OpenBSD and httpd should know? Why httpd and not nginx?
-
Dead Software Walking: The ongoing evolution of relayd(8) and httpd(8) https://undeadly.org/cgi?action=article;sid=20260805083816 #openbsd #relayd #httpd #development #webserver #loadbalancing #security #cryptography #modernsoftware #freesoftware #libresoftware
-
Dead Software Walking: The ongoing evolution of relayd(8) and httpd(8) https://undeadly.org/cgi?action=article;sid=20260805083816 #openbsd #relayd #httpd #development #webserver #loadbalancing #security #cryptography #modernsoftware #freesoftware #libresoftware
-
httpd(8) gains support for custom HTTP headers https://www.undeadly.org/cgi?action=article;sid=20260725103657 #openbsd #httpd #customheaders #securityheaders #webserver #security #libresoftware #freesoftware
-
httpd(8) gains support for custom HTTP headers https://www.undeadly.org/cgi?action=article;sid=20260725103657 #openbsd #httpd #customheaders #securityheaders #webserver #security #libresoftware #freesoftware
-
If 'go to' means first choice, where possible, then of course it is #httpd from #djbwares. Simple; static; secure; low resource usage; and I know exactly how it works.
One of the reasons that I maintain it is so that I can use it myself. (-:
http://jdebp.info/Softwares/djbwares/
It is running on #NetBSD for my public WWW site. But I have an internal WWW site where it runs on #FreeBSD.
Years ago, it was my own httpd and httppd, on OS/2. (-:
-
If 'go to' means first choice, where possible, then of course it is #httpd from #djbwares. Simple; static; secure; low resource usage; and I know exactly how it works.
One of the reasons that I maintain it is so that I can use it myself. (-:
http://jdebp.info/Softwares/djbwares/
It is running on #NetBSD for my public WWW site. But I have an internal WWW site where it runs on #FreeBSD.
Years ago, it was my own httpd and httppd, on OS/2. (-:
-
Does your system show stats about how many transactions connections serviced before they closed? Or, alternatively, what the lifetimes of established connections are?
I'm asking because I'm putting the occasional knob into the HTTP server in #djbwares and you've made me think about transaction caps and what's reasonable when one is under attack from an LLM scraper; when one really doesn't want the attacker to be able to hold existing connections open indefinitely.
-
Does your system show stats about how many transactions connections serviced before they closed? Or, alternatively, what the lifetimes of established connections are?
I'm asking because I'm putting the occasional knob into the HTTP server in #djbwares and you've made me think about transaction caps and what's reasonable when one is under attack from an LLM scraper; when one really doesn't want the attacker to be able to hold existing connections open indefinitely.
-
Apache httpd 2.4.68 has been released! It includes a mod_http2 update to 2.0.42, which includes more fixes for the recently announced "HTTP/2 Bomb"
https://downloads.apache.org/httpd/CHANGES_2.4.68
https://blog.calif.io/p/codex-discovered-a-hidden-http2-bomb
For more info, here's a post @icing wrote about the original "HPACK Bombing Apache" about a year ago:
-
Apache httpd 2.4.68 has been released! It includes a mod_http2 update to 2.0.42, which includes more fixes for the recently announced "HTTP/2 Bomb"
https://downloads.apache.org/httpd/CHANGES_2.4.68
https://blog.calif.io/p/codex-discovered-a-hidden-http2-bomb
For more info, here's a post @icing wrote about the original "HPACK Bombing Apache" about a year ago:
-
Random relinking at boot comes to httpd(8) and smtpd(8) https://www.undeadly.org/cgi?action=article;sid=20260605064136 #openbsd #relink #randomrelink #httpd #smtpd #opensmtpd #security #development #freesoftware #libresoftware
-
Random relinking at boot comes to httpd(8) and smtpd(8) https://www.undeadly.org/cgi?action=article;sid=20260605064136 #openbsd #relink #randomrelink #httpd #smtpd #opensmtpd #security #development #freesoftware #libresoftware
-
Codex Discovered a Hidden HTTP/2 Bomb
https://blog.calif.io/p/codex-discovered-a-hidden-http2-bomb
#http #http2 #http2bomb #apache #httpd #nginx #envoy #IIS #cve #cve_2026_49975
-
Codex Discovered a Hidden HTTP/2 Bomb
https://blog.calif.io/p/codex-discovered-a-hidden-http2-bomb
#http #http2 #http2bomb #apache #httpd #nginx #envoy #IIS #cve #cve_2026_49975
-
#Freenginx 1.31.2 has been released ( #nginx / #http / #http2 / #http3 / #httpd / #Web / #Webserver / #TLS / #TLS13 ) https://freenginx.org/
-
#Freenginx 1.31.2 has been released ( #nginx / #http / #http2 / #http3 / #httpd / #Web / #Webserver / #TLS / #TLS13 ) https://freenginx.org/
-
#nginx 1.31.1 (dev) has been released ( #http / #http2 / #http3 / #httpd / #Web / #Webserver / #TLS / #TLS13 / #CVE / #SecurityVulnerability ) https://nginx.org/
-
#nginx 1.31.1 (dev) has been released ( #http / #http2 / #http3 / #httpd / #Web / #Webserver / #TLS / #TLS13 / #CVE / #SecurityVulnerability ) https://nginx.org/
-
#nginx 1.30.2 has been released ( #http / #http2 / #http3 / #httpd / #Web / #Webserver / #TLS / #TLS13 / #CVE / #SecurityVulnerability ) https://nginx.org/
-
#nginx 1.30.2 has been released ( #http / #http2 / #http3 / #httpd / #Web / #Webserver / #TLS / #TLS13 / #CVE / #SecurityVulnerability ) https://nginx.org/
-
Yang masih pakai #httpd nya #apache silahkan dicek, kena impact-nya gak
Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCE https://thehackernews.com/2026/05/critical-apache-http2-flaw-cve-2026.html
-
Yang masih pakai #httpd nya #apache silahkan dicek, kena impact-nya gak
Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCE https://thehackernews.com/2026/05/critical-apache-http2-flaw-cve-2026.html
-
Apache httpd 2.4.67 released
https://downloads.apache.org/httpd/Announcement2.4.html -
Apache httpd 2.4.67 released
https://downloads.apache.org/httpd/Announcement2.4.html -
New #blog on #BurgeonLab ✍️
➡️ https://burgeonlab.com/blog/feather-wiki-brain-dump-app/
I wrote about a new app I'm using and my note-taking setup! It's a tool used for non-linear notebooks and #wikis called Feather Wiki @FeatherWiki.
This is post 38 of #100DaysToOffload
📈 https://burgeonlab.com/tags/100daystooffload/@[email protected] @TiddlyWiki
#blogging #blogs #guides #newpost #blogpost #smolweb #techblog #techguides #termux #android #obsidian #pkm #syncthing #httpd #busybox #braindump #privacy #wiki #featherwiki #tiddlywiki #selfhosting
-
New #blog on #BurgeonLab ✍️
➡️ https://burgeonlab.com/blog/feather-wiki-brain-dump-app/
I wrote about a new app I'm using and my note-taking setup! It's a tool used for non-linear notebooks and #wikis called Feather Wiki @FeatherWiki.
This is post 38 of #100DaysToOffload
📈 https://burgeonlab.com/tags/100daystooffload/@[email protected] @TiddlyWiki
#blogging #blogs #guides #newpost #blogpost #smolweb #techblog #techguides #termux #android #obsidian #pkm #syncthing #httpd #busybox #braindump #privacy #wiki #featherwiki #tiddlywiki #selfhosting
-
Gotta love the once-a-decade installing #Apache #httpd server experience. Can't just keep a local settings file in your user directory for life, gotta one-time edit some config files buried in system directories, and of course you have to completely re-learn from scratch what changes you need to make to get your site running again
-
Running #OpenBSD 7.8 :openbsd:
DNS: #nsd (3 Master Zones), #DNSSEC & #DANE (RFC6698) + #unbound
Firewall: #pf with auto-fed tables (IPS-style), spambot-tarpitting & service rate limits.
Mail: #smtpd (Multi-domain, RFC8461/MTA-STS) + #rspamd (DKIM) + #dovecot (IMAPS-only).
Spam-Defense: #spamd with auto-SPF-walk (no more greylisting issues).
Web: #relayd (TLS-Terminator, HSTS, CSP) + #httpd (NIP-05, Autoconfig, security.txt).
Performance: Lightweight "Fail2Ban" via 1-liner shell script (No Python crap!).
#Nostr Relay in Rust building...
#SelfHosted #SysAdmin #Security #Privacy -
Running #OpenBSD 7.8 :openbsd:
DNS: #nsd (3 Master Zones), #DNSSEC & #DANE (RFC6698) + #unbound
Firewall: #pf with auto-fed tables (IPS-style), spambot-tarpitting & service rate limits.
Mail: #smtpd (Multi-domain, RFC8461/MTA-STS) + #rspamd (DKIM) + #dovecot (IMAPS-only).
Spam-Defense: #spamd with auto-SPF-walk (no more greylisting issues).
Web: #relayd (TLS-Terminator, HSTS, CSP) + #httpd (NIP-05, Autoconfig, security.txt).
Performance: Lightweight "Fail2Ban" via 1-liner shell script (No Python crap!).
#Nostr Relay in Rust building...
#SelfHosted #SysAdmin #Security #Privacy -
After discovering #TiddlyWiki from @jbaty, I went ahead to give #FeatherWiki (lightweight TW fork) a spin as a personal #braindump bin. I really like how it’s just a HTML file at 58kb!
Using #Android, it failed due to Android Storage Access Framework (#SAF) limitations. I ended using the amazing #Termux once again to run #Busybox #httpd, automate the whole process of opening, serving & saving back to my…
Full note: https://burgeonlab.com/notes/2026/0325-165827
Syndicated by #Indiekit -
After discovering #TiddlyWiki from @jbaty, I went ahead to give #FeatherWiki (lightweight TW fork) a spin as a personal #braindump bin. I really like how it’s just a HTML file at 58kb!
Using #Android, it failed due to Android Storage Access Framework (#SAF) limitations. I ended using the amazing #Termux once again to run #Busybox #httpd, automate the whole process of opening, serving & saving back to my…
Full note: https://burgeonlab.com/notes/2026/0325-165827
Syndicated by #Indiekit -
The early Web had a quality that has been lost ever since: it was *simple*
Download #httpd , #netscape write some #html by hand and boom, the concept of a networked digital society is born.
It first started going pear shaped with #LAMP . The complexity of a full blown database was not justified for most use cases. As proven decades later by the popularity of #sqlite and #ssg approaches.
The final blow was when #bigtech got into the act. Immense complexity for the simplest things became a moat
-
The early Web had a quality that has been lost ever since: it was *simple*
Download #httpd , #netscape write some #html by hand and boom, the concept of a networked digital society is born.
It first started going pear shaped with #LAMP . The complexity of a full blown database was not justified for most use cases. As proven decades later by the popularity of #sqlite and #ssg approaches.
The final blow was when #bigtech got into the act. Immense complexity for the simplest things became a moat
-
Маленький веб
Компактная и портабельная программа, четко выполняющая свое предназначение — редкая для современного мира красота и услада для глаз опытного разработчика. Именно такие проекты, реализующие различные серверы и клиенты для веба вы найдете в этой статье.
-
If you want to serve a static webpage from a #git repository, #Apache #httpd can do this. So I build a #Docker container that extends official image by git client and a shell script, that clones/updates content from a given repo. Every five minutes script updates content and there is also a #Helm chart, to deploy container to a #Kubernetes cluster.
Docker container:
https://hub.docker.com/r/starwitorg/httpd-gitHelm chart: https://hub.docker.com/r/starwitorg/httpd-git-chart
Source code:
https://github.com/starwit/httpd-chart -
Huge kudos to everyone who worked, and still works, on #httpd. Went down the rabbit hole reading about it and found some seriously impressive engineering.
-
Huge kudos to everyone who worked, and still works, on #httpd. Went down the rabbit hole reading about it and found some seriously impressive engineering.
-
Early results are not promising. I've had a handful of HEAD requests in the past day. Only 2 appear legitimate, in that they hit genuine page URLs. The others were attempts to exploit WordPress vulnerabilities.
-
It makes me think that there's one well-behaved 'bot drowned in a sea of ill-behaved ones.
I'm just instrumenting #djbwares httpd to log GET and HEAD differently. I wonder what I'll see.
-
Is it doing straightforward GETs? Or is it doing HEAD? Or using If-Modified-Since?