Hacktoberfest 2026:メンテナが10月に向けて印を付けた、オープンで初心者向けの issue。 Hacktoberfest の issue を見る

High RAM Usage with Concurrent Logging Mode in ModSecurity

オープン
#3,414 コメント 8 件 リアクション 0 件 担当者 0 名 GitHub で見る

メンテナーはふだん 1 日以内に返信

まだ誰も着手していません。

評価

難易度
4/5
見積もり時間
3〜5日
初心者へのやさしさ
35/100
issue の種類
バグ
明瞭さ
説明が足りない
活発さ
停滞
技術スタック
cpp, nginx
領域
backend, security

調査の方向性

まず、RAMと監査ログの増加を監視しながら、ModSecurity 3.0.13、Nginx 1.27.1、SecAuditLogType Concurrent、および SecAuditLogStorageDir /var/log/modsec/audit を使用して報告された事象を再現します。ログを消去する前後でメモリ使用量を比較します。原因が特定され、継続的なトラフィックおよび低トラフィックの間もメモリが安定していれば完了です。

索引モデルが issue の本文から書いたものです。

説明

3.x
Description

I am experiencing an issue where my application consumes a high amount of RAM when using the Concurrent Logging mode in ModSecurity. The memory usage increases gradually over time and does not decrease, even after periods of low activity, until I cleaned the logs.

Environment
  • ModSecurity Version: 3.0.13
  • Web Server: Nginx 1.27.1
  • Application Details: a PHP-based web app
  • Concurrent Logging Configuration:
    SecAuditLogType Concurrent
    SecAuditLogStorageDir /var/log/modsec/audit
Steps to Reproduce
  1. Enable Concurrent Logging mode in ModSecurity configuration.
  2. Run the application under normal traffic.
  3. Monitor RAM usage over time (e.g., using top or htop or metric Grafana).
  4. Observe that RAM usage increases continuously without dropping.
  5. Clear the log in /var/log/modsec directory and watch the RAM decrease.
Expected Behavior
  • RAM usage should remain stable or decrease during low traffic periods.
Actual Behavior
  • RAM usage increases gradually and does not decrease, leading to potential memory exhaustion.
Additional Information

Ram increased from 300MiB to 4GiB in almost 30 days on nginx:
Image

Ram usage reduced after cleaning up logs:
Image

Request

I would appreciate any insights or solutions to mitigate this memory consumption issue. Is there a recommended configuration for Concurrent Logging to prevent memory leaks, or is this a bug?

Thank you for your help!

主要言語
C++
スター
9.8k
フォーク
1.8k
平均マージ
2時間 46分
マージ済み PR(30日)
1

環境構築

  • Dockerfile・Docker Compose ファイルなし
  • プルリクエストのテンプレートあり
  • コントリビューションガイドなし

はじめの一歩

  1. issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
  2. 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
  3. リポジトリをフォークし、ブランチを切って変更します。
  4. issue 番号を参照したプルリクエストを送ります。

owasp-modsecurity/ModSecurity のほかの issue

owasp-modsecurity/ModSecurity の issue をすべて見る

似ている issue

C++ の issue をもっと見る

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。