Browse Source

Set Least Previliage for .PEM files under directory /etc/genesis.

We don't have the ability to coordinate custom user ids in a safe way
across different container yet.this is a bandaid fix and will be 
addressed properly later


Change-Id: I5e211f80a9402c5fafbc614ec58e481106632681
Sandeep Reddy Thumma 1 month ago
parent
commit
9628da8cf4
1 changed files with 2 additions and 0 deletions
  1. 2
    0
      promenade/templates/scripts/genesis.sh

+ 2
- 0
promenade/templates/scripts/genesis.sh View File

@@ -8,6 +8,8 @@ mkdir -p /var/log/armada
8 8
 touch /var/log/armada/bootstrap-armada.log
9 9
 chmod 777 /var/log/armada/bootstrap-armada.log
10 10
 
11
+chmod -R 600 /etc/genesis
12
+
11 13
 set +x
12 14
 log
13 15
 log === Waiting for Kubernetes API availablity ===

Loading…
Cancel
Save