Bug 1720276
| Summary: | [QE][Docs][rhos-tech][Security] Add explanations for LimitRequestBody and FollowSymLinks | ||
|---|---|---|---|
| Product: | Red Hat OpenStack | Reporter: | Martin Lopes <mlopes> |
| Component: | documentation | Assignee: | Roger Heslop <rheslop> |
| Status: | MODIFIED --- | QA Contact: | RHOS Documentation Team <rhos-docs> |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | 15.0 (Stein) | CC: | acanan, alee, alink, alonare, astillma, dhill, ggrasza, jagee, lbragsta, nlevinki, ravsingh, rheslop, rhos-docs, sandyada, snanawar |
| Target Milestone: | --- | Keywords: | Documentation, Reopened, Triaged |
| Target Release: | --- | Flags: | rheslop:
needinfo?
(astillma) rheslop: needinfo? (snanawar) |
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | docs-accepted | ||
| Fixed In Version: | Doc Type: | If docs needed, set a value | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2021-07-07 09:25:55 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Martin Lopes
2019-06-13 14:36:57 UTC
Add this to the dashboard chapter: https://access.redhat.com/documentation/en-us/red_hat_openstack_platform/14/html-single/security_and_hardening_guide/index#hardening_the_dashboard_service Received request to add FollowSymLinks to discussion. Added more updates to draft, updated example, phrasing. Hi Aharon, Jeremy and I were getting up-to-speed on this and had a question on comment #23 [0]. Section two step three implies some functional tests, but we're not sure which test exactly. Adding needsinfo from Martin since he authored the comment, and hoping he can provide context or point us in the right direction. Thanks, Lance [0] https://bugzilla.redhat.com/show_bug.cgi?id=1720276#c23 mlopes - Any update for comment #39 ? Any update on this BZ? Regards, Amol Lonare It is safe to set "-Follow SymLinks", since, as David Hill pointed out, there aro no symlinks present. As to how to do it in TripleO, I'm not sure, I think it would have to be done by an ansible playbook after the deploy. |