Run virtqemud with umask 0027
Virtqemud container requires umask 0027 as libvirt/qemu dynamic permissions should be restricted to not create VM files world readable. Depends-On: https://review.opendev.org/858930 Signed-off-by: Bogdan Dobrelya <bdobreli@redhat.com> Change-Id: I2bdc9c96cfce3df529229f4194dc816fa798658d
This commit is contained in:
parent
e36aaed0e8
commit
7bba86fc58
|
@ -671,6 +671,7 @@ outputs:
|
|||
depends_on: *libvirt_depends_on
|
||||
environment:
|
||||
KOLLA_CONFIG_STRATEGY: COPY_ALWAYS
|
||||
TRIPLEO_KOLLA_UMASK: "0027"
|
||||
volumes:
|
||||
list_concat:
|
||||
- {get_attr: [ContainersCommon, volumes]}
|
||||
|
|
Loading…
Reference in New Issue