Red Hat Bugzilla – Bug 782504
Propose that you turn on PrivateTmp=true in service file for fail2ban
Last modified: 2013-03-15 16:12:14 EDT
I would like to propose using PrivateTmp for fail2ban systemd unit file
This should make the use of /tmp directory more secure
and avoid users from being able to potentially effect it.
Any change on this bug. We are coming up to Feature Freeze, and would like some comment on this bug.
If you do not believe this application uses /tmp than please comment on this and close the bug.
If you believe this application needs to use /tmp to communicate with other applications or users then you can close this bug with that comment.
If your app does not use systemd, then close this bug with that comment.
If you have no idea, then please add a comment, and change the bug to assigned.
I need to update the status on this feature.
Thanks for your help.
This looks like it does not support systemd yet, so please use this flag when you do.
Uses /var/run/fail2ban now instead of /tmp.