hadoop-common-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Brahma Reddy Battula (JIRA)" <j...@apache.org>
Subject [jira] [Assigned] (HADOOP-11137) put up guard rails around pid and log file handling
Date Wed, 11 Feb 2015 13:15:11 GMT

     [ https://issues.apache.org/jira/browse/HADOOP-11137?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel

Brahma Reddy Battula reassigned HADOOP-11137:

    Assignee: Brahma Reddy Battula

> put up guard rails around pid and log file handling
> ---------------------------------------------------
>                 Key: HADOOP-11137
>                 URL: https://issues.apache.org/jira/browse/HADOOP-11137
>             Project: Hadoop Common
>          Issue Type: Improvement
>          Components: scripts, security
>            Reporter: Allen Wittenauer
>            Assignee: Brahma Reddy Battula
>              Labels: newbie, scripts, security
> We should do a better job of protecting against symlink attacks in the pid and log file
handling code:
> a) Change the default location to have a user or id.str component
> b) Check to make sure a pid file is actually a pid file (single line, nothing but numbers)
> ... maybe other stuff?

This message was sent by Atlassian JIRA

View raw message