aws / aws/aws-ec2-instance-connect-config

Please consider securing the systemd service

Open
#14 0 comments 2 reactions 0 assignees View on GitHub
Dominant language
Shell
Stars
88
Forks
39
PR merge metrics
No merged PRs in 30d

Description

The proposal to make the service more isolated from the system came up during reviewing the package for inclusion in the "main" Ubuntu package set:
https://bugs.launchpad.net/ubuntu/+source/ec2-instance-connect/+bug/1835114/comments/5

There are a few options which could be enabled in the .service file which could make it more secure:
https://www.redhat.com/sysadmin/mastering-systemd

Contributor guide

Open the contributing guide

Research direction

Start by locating the systemd .service file in the package and reviewing the linked Launchpad discussion and Red Hat systemd guidance. Identify isolation options that fit this service, then verify that the service still functions with the selected hardening settings; done means the service is more isolated without breaking its existing behavior.

Written by the indexing model from the issue text.

Assessment

Tech stack
linux
Domain
operating-systems, security
Issue type
Feature
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
30/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.