[openstreetmap/openstreetmap-website] Limits on number of tags and relation members (#1711)

mmd notifications at github.com
Tue Aug 16 19:14:37 UTC 2022


@joto again brings up the seemingly unlimited number of tags as a potential security issue in his new data model study. While this is technically speaking not quite correct (we have implicit limits based on message sizes), it would still be good to have an explicit max number somewhere below 10k. Yes, we should also include this limit in /capabilities and give editing apps ample time to adjust.

While CGImap already has a config option to enable a tag limit right away, we don't have anything similar for the Rails port yet.

Any thoughts on this?




-- 
Reply to this email directly or view it on GitHub:
https://github.com/openstreetmap/openstreetmap-website/issues/1711#issuecomment-1217056767
You are receiving this because you are subscribed to this thread.

Message ID: <openstreetmap/openstreetmap-website/issues/1711/1217056767 at github.com>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstreetmap.org/pipermail/rails-dev/attachments/20220816/5d31e384/attachment.htm>


More information about the rails-dev mailing list