Uploaded image for project: 'ZABBIX FEATURE REQUESTS'
  1. ZABBIX FEATURE REQUESTS
  2. ZBXNEXT-2565

insecure permissions for zabbix_server_XXXX.pinger files

XMLWordPrintable

    • Icon: Change Request Change Request
    • Resolution: Unresolved
    • Icon: Trivial Trivial
    • None
    • 2.2.7
    • Server (S)
    • CentOS 6.6 x86_64

      Temp files for fping are created world readable:

      [root@myserver ~]# ls -l /tmp/zabbix_*pinger
      rw-rw-r- 1 zabbix zabbix 383 nov 5 09:24 /tmp/zabbix_server_5498.pinger
      rw-rw-r- 1 zabbix zabbix 13 nov 5 09:24 /tmp/zabbix_server_5502.pinger

      AFAIK these file contain hostnames only, but it would be better to be on the safe side and supress the read flag for others.

            Unassigned Unassigned
            albertodiaz Alberto Díaz
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: