aws / aws/aws-ec2-instance-connect-config
Please consider securing the systemd service
- Dominant language
- Shell
- Stars
- 88
- Forks
- 39
- PR merge metrics
- No merged PRs in 30d
Description
The proposal to make the service more isolated from the system came up during reviewing the package for inclusion in the "main" Ubuntu package set:
https://bugs.launchpad.net/ubuntu/+source/ec2-instance-connect/+bug/1835114/comments/5
There are a few options which could be enabled in the .service file which could make it more secure:
https://www.redhat.com/sysadmin/mastering-systemd
Contributor guide
Research direction
Start by locating the systemd .service file in the package and reviewing the linked Launchpad discussion and Red Hat systemd guidance. Identify isolation options that fit this service, then verify that the service still functions with the selected hardening settings; done means the service is more isolated without breaking its existing behavior.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- linux
- Domain
- operating-systems, security
- Issue type
- Feature
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 30/100