Back to bug 2224648

Who When What Removed Added
Red Hat Bugzilla 2023-07-21 18:51:16 UTC Pool ID sst_system_roles_rhel_8
Red Hat One Jira (issues.redhat.com) 2023-07-21 18:51:44 UTC Link ID Red Hat Issue Tracker RHELPLAN-163000
Rich Megginson 2023-07-21 19:08:54 UTC Target Release --- 8.9
CC djez, jharuda, vdanek
Doc Type If docs needed, set a value Bug Fix
Flags needinfo?(djez) needinfo?(jharuda) needinfo?(vdanek)
Rich Megginson 2023-07-21 19:34:18 UTC Status NEW POST
David Jež 2023-07-25 08:34:42 UTC QA Contact rhel-cs-system-management-subsystem-qe djez
Jakub Haruda 2023-07-25 09:20:36 UTC Flags needinfo?(jharuda)
Rich Megginson 2023-08-02 21:38:57 UTC Fixed In Version rhel-system-roles-1.22.0-0.19.el8
Status POST MODIFIED
errata-xmlrpc 2023-08-02 21:40:47 UTC Status MODIFIED ON_QA
Rich Megginson 2023-08-10 14:21:08 UTC Doc Type Bug Fix Enhancement
Doc Text Enhancement:
Make resetting to defaults reload instead of restart firewalld
Reason:
Reloading in firewalld should successfully complete the configuration reset, and restarting adds downtime which can be used to open a connection that persists after firewalld has finishes restarting; this connection can be used to bypass firewall rules, since firewalld will not block traffic from active connections.
Result:
Minimal downtime when using `previous: replaced`
Addresses an issue brought up in #140, where due to the restart on resetting to defaults, the feature may not be suitable for production environments.
David Jež 2023-08-13 15:00:34 UTC Flags needinfo?(djez)
Status ON_QA VERIFIED

Back to bug 2224648