Uploaded image for project: 'Zeppelin'
  1. Zeppelin
  2. ZEPPELIN-3995

How to lock down sh, other OS access?

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Open
    • Minor
    • Resolution: Unresolved
    • 0.8.1
    • None
    • zeppelin-server
    • None

    Description

      I'm running Zeppelin in docker based on the image on docker hub.  I've noticed that the sh interpreter, and I guess all others, have access to the configuration files.  For example I'm able to change the notebook permissions file using the sh interpreter.  This is clearly a problem.  Is there a way to change what user the interpreters, i guess, run as which won't have permissions to change the application's configuration?   Otherwise, there really isn't any notebook security, right?

      Attachments

        Activity

          People

            Unassigned Unassigned
            jakesony Jake
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

            Dates

              Created:
              Updated: