Bug 1809458
| Summary: | [FDP 20.B] ovn-northd must be able to read files with permissions of a private group | ||||||
|---|---|---|---|---|---|---|---|
| Product: | Red Hat Enterprise Linux Fast Datapath | Reporter: | Dominik Holler <dholler> | ||||
| Component: | ovn2.11 | Assignee: | Ilya Maximets <i.maximets> | ||||
| Status: | CLOSED WONTFIX | QA Contact: | Jianlin Shi <jishi> | ||||
| Severity: | medium | Docs Contact: | |||||
| Priority: | medium | ||||||
| Version: | FDP 20.A | CC: | ctrautma, dcbw, mburman, mmichels, rkhan | ||||
| Target Milestone: | --- | ||||||
| Target Release: | --- | ||||||
| Hardware: | Unspecified | ||||||
| OS: | Unspecified | ||||||
| Whiteboard: | |||||||
| Fixed In Version: | Doc Type: | If docs needed, set a value | |||||
| Doc Text: | Story Points: | --- | |||||
| Clone Of: | Environment: | ||||||
| Last Closed: | 2023-10-05 15:05:18 UTC | Type: | Bug | ||||
| Regression: | --- | Mount Type: | --- | ||||
| Documentation: | --- | CRM: | |||||
| Verified Versions: | Category: | --- | |||||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
| Cloudforms Team: | --- | Target Upstream Version: | |||||
| Embargoed: | |||||||
| Attachments: |
|
||||||
Created attachment 1667130 [details] terminal log Description of problem: In FDP 20.b the ovn-northd is only member of the single group hugetlbfs. This is a problem, because if the private key file for ovn-northd has read permissions for the hugetlbfs, other members of the hugetlbfs group can read the private key file, too. Actual results: It is not possible to have a file readable only for ovn-northd's group. Expected results: It is possible to have a file readable only for ovn-northd's group.