Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Investigate disabling /rw customizability for sd-app, other AppVMs #233

Closed
eloquence opened this issue Jan 11, 2019 · 3 comments
Closed
Labels

Comments

@eloquence
Copy link
Member

eloquence commented Jan 11, 2019

The /rw path in TemplateBasedVMs allows system config changes to be persisted across reboots. We don't use this feature for the workstation, and successful exploits could attempt to use it to anchor malicious system config changes. We should investigate whether it is possible to disable this feature entirely for the sd-app VM, and potentially other VMs as well that do not require it.

@marmarek
Copy link

@eloquence eloquence changed the title Investigate disabling /rw customizability for sd-svs, other AppVMs Investigate disabling /rw customizability for sd-app, other AppVMs Sep 11, 2020
@eloquence
Copy link
Member Author

Since we're now symlinking MIME types into the private volume per #605 towards template consolidation (#471), I'm guessing this is no longer plausible -- I'd motion to close this issue, and open a separate issue to consider the private volume hardening strategies described in the link above.

@eloquence
Copy link
Member Author

Closing in favor of #616.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

2 participants