[Openstack-security] [Bug 1584942] [NEW] Security role sets incorrect permissions on auditd logs

Major Hayden major at mhtx.net
Mon May 23 20:15:22 UTC 2016


Public bug reported:

The security role sets the permissions on all audit logs to 0400, but
this is incorrect.  The active log that is being written to should be
set to 0600 and the rotated ones should be 0400.

This causes auditd to fail on startup.

** Affects: openstack-ansible
     Importance: High
     Assignee: Major Hayden (rackerhacker)
         Status: New


** Tags: security

-- 
You received this bug notification because you are a member of OpenStack
Security, which is subscribed to OpenStack.
https://bugs.launchpad.net/bugs/1584942

Title:
  Security role sets incorrect permissions on auditd logs

Status in openstack-ansible:
  New

Bug description:
  The security role sets the permissions on all audit logs to 0400, but
  this is incorrect.  The active log that is being written to should be
  set to 0600 and the rotated ones should be 0400.

  This causes auditd to fail on startup.

To manage notifications about this bug go to:
https://bugs.launchpad.net/openstack-ansible/+bug/1584942/+subscriptions




More information about the Openstack-security mailing list