[ https://issues.apache.org/jira/browse/HADOOP-11137?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Allen Wittenauer resolved HADOOP-11137. --------------------------------------- Resolution: Won't Fix > put up guard rails around pid and log file handling > --------------------------------------------------- > > Key: HADOOP-11137 > URL: https://issues.apache.org/jira/browse/HADOOP-11137 > Project: Hadoop Common > Issue Type: Improvement > Components: scripts, security > Reporter: Allen Wittenauer > Priority: Major > Labels: newbie, scripts, security > > We should do a better job of protecting against symlink attacks in the pid > and log file handling code: > a) Change the default location to have a user or id.str component > b) Check to make sure a pid file is actually a pid file (single line, nothing > but numbers) > ... maybe other stuff? -- This message was sent by Atlassian JIRA (v7.6.3#76005) --------------------------------------------------------------------- To unsubscribe, e-mail: common-dev-unsubscr...@hadoop.apache.org For additional commands, e-mail: common-dev-h...@hadoop.apache.org