Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Linux vault config files not writable for vault #23270

Open
wants to merge 27 commits into
base: main
Choose a base branch
from

Conversation

l-with
Copy link
Contributor

@l-with l-with commented Sep 23, 2023

fixes #23269

@l-with l-with requested a review from a team September 23, 2023 10:29
@l-with l-with requested review from a team as code owners September 23, 2023 10:29
@l-with l-with requested review from dekimsey and sarahethompson and removed request for a team September 23, 2023 10:29
@ccapurso
Copy link
Contributor

ccapurso commented Nov 1, 2023

Hi @l-with, thank you for the contribution and desire to increase our production hardening! We are somewhat concerned if there might be unintended consequences from this change. We are exploring the /etc/vault.d/* permissions and the current state of .release/linux/postinst in general internally to determine if additional changes are necessary.

@VioletHynes
Copy link
Contributor

Hi there! Just wanted to give this one an update as this has been open for some time. We're still looking into this, but it's currently blocked by something downstream, and we have to bundle it into a larger change as a result. We have some internal tickets to track that work, but it is ongoing.

Thank you for raising it! I'll keep this open so that we can close it once the fix has been merged.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

after linux installation, the vault config files are writable for vault
4 participants