github-actions[bot] commented on issue #15869:
URL: 
https://github.com/apache/dolphinscheduler/issues/15869#issuecomment-2062890662

   ### Search before asking
   
   - [X] I had searched in the 
[issues](https://github.com/apache/dolphinscheduler/issues?q=is%3Aissue) and 
found no similar feature requirement.
   
   
   ### Description
   
   
![image](https://github.com/apache/dolphinscheduler/assets/97863434/ada9c408-338f-4cb4-a259-a62eadd2d2ba)
   I deployed the scheduler without thinking according to this tutorial, but at 
night someone used the dolphinscheduler user to remotely log in to the server 
and implanted a mining (?) program.
   It is recommended to set the fixed password of the tutorial to a randomly 
generated password and print it to the console.
   (This sudo configuration can be switched to the root user, which is actually 
very risky)
   
   ### Documentation Links
   
   
https://dolphinscheduler.apache.org/zh-cn/docs/3.2.1/guide/installation/pseudo-cluster
   
   ### Are you willing to submit a PR?
   
   - [ ] Yes I am willing to submit a PR!
   
   ### Code of Conduct
   
   - [X] I agree to follow this project's [Code of 
Conduct](https://www.apache.org/foundation/policies/conduct)


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to