Details
-
Documentation
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
None
Description
We have SECURITY.md and also "Firewall/OS level Security" section, but the document doesn't explicitly mention the fact that Storm processes should use OS account(s) which should be properly restricted. We may also want to note that workers which could execute arbitrary code will be running with Supervisor OS account by default.
Attachments
Issue Links
- links to