Uploaded image for project: 'Log4j 2'
  1. Log4j 2
  2. LOG4J2-1699

Configurable Log File Permissions with PosixFilePermission

    Details

    • Type: Question
    • Status: Resolved
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: 2.9.0
    • Component/s: Appenders
    • Labels:
    • Environment:

      Linux

      Description

      We would like to hear the communities thoughts on being able to configure the permissions log files are created with. We don't want to rely on UMASK because we have managed services who's process should generate logs with a 644 yet deployed applications by users should default to a 640 because the logs may contain sensitive information.

      We will make the modification and set this in the properties file. Now we are looking to see what the community position would be on accepting such a patch, we don't want to be patching our own distribution indefinitely.

      I searched all the JIRAs and was not able to find any matching requirements recently. All I could find was something dated in 2006: https://bz.apache.org/bugzilla/show_bug.cgi?id=40407

        Attachments

        1. LOG4J2-1699-2.patch
          51 kB
          Pierrick HYMBERT
        2. LOG4J2-1699.patch
          53 kB
          Pierrick HYMBERT

          Activity

            People

            • Assignee:
              Unassigned
              Reporter:
              ddimatos Demetrios Dimatos
            • Votes:
              1 Vote for this issue
              Watchers:
              7 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved:

                Time Tracking

                Estimated:
                Original Estimate - 336h
                336h
                Remaining:
                Remaining Estimate - 336h
                336h
                Logged:
                Time Spent - Not Specified
                Not Specified