Zuulv3 Executor Security Enhancement

Zuulv3 allows running Ansible playbooks from arbitrary sources. So we
need to mitigate as much of that risk as we can in a reasonable amount
of complexity.

Change-Id: I4bc1bf971486a744ff340af5c5189733545197ab
Story: 2000910
Task: 3541
This commit is contained in:
Clint Byrum
2017-03-10 12:30:50 -08:00
parent 0ac5eeed5b
commit 6dd37ba4a2
2 changed files with 692 additions and 0 deletions

View File

@@ -15,6 +15,7 @@ infrastructure developers.
specs/ansible_puppet_apply
specs/task-tracker
specs/zuulv3
specs/zuulv3-executor-security
specs/gerrit-2.13
Gerrit query for all changes related to priority efforts::