Bug 782511 - Propose that you turn on PrivateTmp=true in service file for openldap
Summary: Propose that you turn on PrivateTmp=true in service file for openldap
Keywords:
Status: CLOSED NOTABUG
Alias: None
Product: Fedora
Classification: Fedora
Component: openldap
Version: rawhide
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
Assignee: Jan Vcelak
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks: PrivateTmp
TreeView+ depends on / blocked
 
Reported: 2012-01-17 15:48 UTC by Daniel Walsh
Modified: 2013-03-04 01:29 UTC (History)
4 users (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2012-01-20 11:27:34 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Daniel Walsh 2012-01-17 15:48:42 UTC
I would like to propose using PrivateTmp for openldap systemd unit file
This should make the use of /tmp directory more secure
and avoid users from being able to potentially effect it.

http://fedoraproject.org/wiki/Features/ServicesPrivateTmp

Comment 1 Jan Vcelak 2012-01-20 11:27:34 UTC
OpenLDAP clients and server do not use /tmp nor /var/tmp.


Note You need to log in before you can comment on or make changes to this bug.