Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[TECH DEBT] Harden Salt Master #64045

Closed
dwoz opened this issue Apr 8, 2023 · 1 comment
Closed

[TECH DEBT] Harden Salt Master #64045

dwoz opened this issue Apr 8, 2023 · 1 comment
Assignees
Labels
Sulfur v3006.0 release code name and version tech-debt

Comments

@dwoz
Copy link
Contributor

dwoz commented Apr 8, 2023

Description of the tech debt to be addressed, include links and screenshots

While it is documented that masters are sensitive and access should be restricted. There are still some things we can do to harden master installations. We should start adding a salt user and group to master installs and run the master as an un-privileged user. We should also make sure the permissions on any files the master makes are set properly to this user and group.

@Ch3LL
Copy link
Contributor

Ch3LL commented Apr 15, 2023

closed by #64037

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Sulfur v3006.0 release code name and version tech-debt
Projects
None yet
Development

No branches or pull requests

3 participants