Set keystone.conf to mode 0600
Set keystone.conf readable only by owner Fixes CVE-2013-1977 Fixed bug: 1168252 Change-Id: Idd13b7a58e257565052c54f72c65d8dceb23f27a
This commit is contained in:
parent
7751354b44
commit
d561b70930
1
lib/keystone
Executable file → Normal file
1
lib/keystone
Executable file → Normal file
@ -126,6 +126,7 @@ function configure_keystone() {
|
||||
|
||||
if [[ "$KEYSTONE_CONF_DIR" != "$KEYSTONE_DIR/etc" ]]; then
|
||||
cp -p $KEYSTONE_DIR/etc/keystone.conf.sample $KEYSTONE_CONF
|
||||
chmod 600 $KEYSTONE_CONF
|
||||
cp -p $KEYSTONE_DIR/etc/policy.json $KEYSTONE_CONF_DIR
|
||||
if [[ -f "$KEYSTONE_DIR/etc/keystone-paste.ini" ]]; then
|
||||
cp -p "$KEYSTONE_DIR/etc/keystone-paste.ini" "$KEYSTONE_PASTE_INI"
|
||||
|
Loading…
Reference in New Issue
Block a user