wFabricSecurity adds token-bucket rate limiting to protect Hyperledger Fabric endorsement nodes
The open-source wFabricSecurity library has introduced token-bucket rate limiting to safeguard Hyperledger Fabric endorsement peers from denial-of-service-style attacks. Without such controls, a looping worker flooding peers with thousands of signature requests can exhaust CPU resources, since ECDSA signature verification is computationally expensive. The new RateLimiter component enforces per-participant quotas based on Common Name or IP address, rejecting abusive request spikes before cryptographic processing begins. A RateLimitError exception is raised when a participant exceeds their token allowance, allowing legitimate traffic to continue uninterrupted. The library is compatible with Python 3.10 and above and is available on both GitHub and PyPI.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.


Discussion (0)
Log in to join the discussion and vote.
Log in