Paging requests consume both budgets. Requests behind the same connecting address share limits. The network uses the edge-supplied connecting address and does not store the raw address in the limiter.
Handle HTTP 429
Exhausting either budget returns HTTP 429 with errorpilot_rate_limited and a Retry-After header containing positive integer seconds until the window resets. Wait at least that long, then retry with bounded backoff. Avoid concurrent retry loops that consume the shared budget immediately.
If limit storage is unavailable, admission fails closed rather than allowing unlimited reads. Treat HTTP 503 as temporary unavailability and retry with bounded backoff.