mirror of https://github.com/OISF/suricata
unix-socket: socket permission update
So far, the suricata socket suricata-command.socket has the rights rw-r----- suricata:user. When suricata is used with restricted access, an other application (suricatasc like) that needs to access to the command socket also with restricted access can not write to the socket since it is not the owner (e.g suricata within container, with an hardened value for umask and hardened rights for users). The socket should be set as rw-rw----. Use chmod instead of fchmod and set it after the socket creation.pull/3184/head
parent
0813f08075
commit
63b9b9e9aa
Loading…
Reference in New Issue