Increase default nofile ulimit

Robie Basak robie.basak at
Sun Jun 15 20:41:55 UTC 2014

On Mon, Jun 09, 2014 at 12:10:40PM +0100, Robie Basak wrote:
> AIUI, there are security implications for raising this limit system-wide
> by default, since applications that use select() are often broken and
> will become vulnerable with a higher limit.
> See
> for the previous discussion.

Update: Kees reports that setting _FORTIFY_SOURCE=2 does now add some
protection to this particular failure scenario.

He says: "...but now I won’t be so worried when I see requests to raise
the open descriptor limit above 1024."


Thanks Kees!

