Red Hat Bugzilla – Bug 209335
HVM vnc config leaves world-accessible VNC port open with no password
Last modified: 2007-11-30 17:07:34 EST
This request was evaluated by Red Hat Product Management for inclusion in a Red
Hat Enterprise Linux release. Product Management has requested further review
of this request by Red Hat Engineering. This request is not yet committed for
inclusion in release.
QE ack for RHEL5.
The neccessary patches for VNC password support for FV & PV have been committed
to CVS & built into xen-3.0.3-2.el5
A further build 3.0.3-3.el5 resolves the final part of this which is to make the
/etc/xen directory readable only by root (moe 0700) to protect the plaintext
VNC passwords from unprivileged users.