Appropriate limit for maxResponseBodySize

Hi, I recently started getting a lot of warnings in my log for each of the applications I set up forward auth (through Authentik) for.

WRN ForwardAuth 'maxResponseBodySize' is not configured, allowing unlimited response body size which can lead to DoS attacks and memory exhaustion. Please set an appropriate limit

Where do I set this limit? in my traefik config or in authentik? Also what is an ‘appropriate limit’?

Thanks

Let me Internet search that for you "traefik maxResponseBodySize":

Traefik ForwardAuth doc

It even contains "Guidelines for Setting maxBodySize"

Guidelines are refering for maxBodySize which is a different attribute

True. I guess for maxResponseBodySize there is no real recommendation, My understanding is that ForwardAuth returns the auth service login page. I guess you could try with 1MB (?) and go lower. It will probably mostly depend on the used logo image, if any.

Does it make you happy to answer passiv aggressively on valid questions?
This thread is now the first thing that pops up whens searching for this topic and this type of answers, is one more reason users avoid posting in forums. There isn't much that much discussion out there when someone "Internet searches" for this.

Welcome to our community! Thanks for registering to post.

I am a simple Traefik user, volunteering here since 2022 to help others. I created 5.4k posts, got 619 likes and 376 solutions. And during that time, it happens that even I have a bad day. But I think my net contribution to this forum is positive.