Hardening's SSH listen_to config should be charm agnostic
Bug #1658939 reported by
Gábor Mészáros
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Charm Helpers |
Invalid
|
Undecided
|
Unassigned |
Bug Description
Current settings, including SSH 'listen_to' setting needs to be stored in the charm's local folder, hardening.yaml, which is bound to the environment.
It would be good to have the ability to specify the configuration via the charm config options, e.g. juju config hardening_
Currently, this needs to be done by modifying the charm itself, which makes it less portable and environment-bound.
Related branches
lp:~gabor.meszaros/charm-helpers/lp1658939
Ready for review
for merging
into
lp:charm-helpers
- Edward Hope-Morley: Pending requested
- charmers: Pending requested
-
Diff: 256 lines (+85/-39)4 files modifiedcharmhelpers/contrib/hardening/audits/file.py (+27/-23)
charmhelpers/contrib/hardening/ssh/checks/config.py (+4/-0)
charmhelpers/contrib/hardening/templating.py (+15/-5)
charmhelpers/contrib/hardening/utils.py (+39/-11)
Changed in charm-helpers: | |
assignee: | nobody → Gábor Mészáros (gabor.meszaros) |
status: | New → In Progress |
Changed in charm-helpers: | |
assignee: | Gábor Mészáros (gabor.meszaros) → nobody |
status: | In Progress → Invalid |
To post a comment you must log in.