[Bug 1167431] AUDIT-0: User/group orthanc for rpmlint
http://bugzilla.suse.com/show_bug.cgi?id=1167431 http://bugzilla.suse.com/show_bug.cgi?id=1167431#c2 --- Comment #2 from Johannes Segitz <jsegitz@suse.com> --- the package is currently broken. /etc/orthanc is owned by root, but orthanc tries to create OrthancStorage in there, which fails since it's already running as the unprivileged user. This can be changed in Resources/Configuration.json AFAIU. This should be moved to /var anyways, /etc is not the right place for this While you're at it you can enable hardenings in the systemd unit like PrivateTmp=true ProtectSystem=strict ProtectHome=true ProtectKernelModules=true ProtectKernelTunables=true ProtectControlGroups=true MountFlags=private NoNewPrivileges=true PrivateDevices=true MemoryDenyWriteExecute=true that shouldn't be an issue with this type of service -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com