Blame SOURCES/rpcbind-1.2.5-dowgrade-priority-callit.patch
|
|
fc485d |
From 7be92b30e47801c651e5316217d1651454653f68 Mon Sep 17 00:00:00 2001
|
|
|
fc485d |
From: Roberto Bergantinos Corpas <rbergant@redhat.com>
|
|
|
fc485d |
Date: Mon, 16 Nov 2020 08:39:36 -0500
|
|
|
fc485d |
Subject: [PATCH] security: dowgrade priority for non-libwrap CALLIT logging
|
|
|
fc485d |
|
|
|
fc485d |
Use aswell auth.warning for non-libwrap CALLIT logging, otherwise
|
|
|
fc485d |
we'll broadcast everywhere for a call that is not allowed anyway
|
|
|
fc485d |
|
|
|
fc485d |
Signed-off-by: Roberto Bergantinos Corpas <rbergant@redhat.com>
|
|
|
fc485d |
Signed-off-by: Steve Dickson <steved@redhat.com>
|
|
|
fc485d |
---
|
|
|
fc485d |
src/security.c | 2 +-
|
|
|
fc485d |
1 file changed, 1 insertion(+), 1 deletion(-)
|
|
|
fc485d |
|
|
|
fc485d |
diff --git a/src/security.c b/src/security.c
|
|
|
fc485d |
index 329c53d..38967dd 100644
|
|
|
fc485d |
--- a/src/security.c
|
|
|
fc485d |
+++ b/src/security.c
|
|
|
fc485d |
@@ -346,7 +346,7 @@ deny:
|
|
|
fc485d |
logit(deny_severity, sa, args->rmt_proc, args->rmt_prog,
|
|
|
fc485d |
": indirect call not allowed");
|
|
|
fc485d |
#else
|
|
|
fc485d |
- logit(0, sa, args->rmt_proc, args->rmt_prog,
|
|
|
fc485d |
+ logit(LOG_AUTH|LOG_WARNING, sa, args->rmt_proc, args->rmt_prog,
|
|
|
fc485d |
": indirect call not allowed");
|
|
|
fc485d |
#endif
|
|
|
fc485d |
return 0;
|
|
|
fc485d |
--
|
|
|
fc485d |
2.26.2
|
|
|
fc485d |
|