pcp
[Top] [All Lists]

[Bug 981] New: pmlc security

To: pcp@xxxxxxxxxxx
Subject: [Bug 981] New: pmlc security
From: bugzilla-daemon@xxxxxxxxxxx
Date: Fri, 12 Jul 2013 20:11:28 +0000
Auto-submitted: auto-generated
Delivered-to: pcp@xxxxxxxxxxx
Bug ID 981
Summary pmlc security
Product pcp
Version unspecified
Hardware All
OS Linux
Status NEW
Severity major
Priority P5
Component pcp
Assignee pcp@kenj.com.au
Reporter fche@redhat.com
CC pcp@oss.sgi.com
Classification Unclassified

As of current git, any user on the local network can talk to a pmlogger
instance's control channel (tcp port 4330 or elsewhere, helpfully supplied by
the local pmcd.pmlogger.* metrics).  This is an invitation for a DoS or worse. 
pmlogger & pmlc (if the latter is still needed/helpful) should talk thorugh a
secure channel such as a AF_UNIX socket in a protected directory.


You are receiving this mail because:
  • You are on the CC list for the bug.
<Prev in Thread] Current Thread [Next in Thread>