World readable permission of certificate file under /var/VRTSat_lhc

book

Article ID: 100060792

calendar_today

Updated On:

Description

Error Message

N/A.

Cause

Under investigation,

Resolution

The forthcoming major release should include a modification to address this concern, dependent on quality assurance testing.

In the interim, a workaround is to edit the permissions of certificate files to 0600 within the VRTSat_lhc directory. These measures enhance the security of the certificates without altering the permissions of the entire directory.

Example:

#chmod 0600 /var/VRTSat_lhc/

 

This issue is currently being considered by Veritas Technologies LLC to be addressed in the next major revision of the product.  There are no plans to address this issue by way of a patch or hotfix in the current or previous versions of the software at the present time.  Please note that Veritas Technologies LLC reserves the right to remove any fix from the targeted release if it does not pass quality assurance tests or introduces new risks to overall code stability.  Veritas’ plans are subject to change and any action taken by you based on the above information or your reliance upon the above information is made at your own risk.

Issue/Introduction

Customers have expressed concerns regarding the accessibility of certificate files in the /var/VRTSat_lhc directory by other users.

Additional Information

ETrack: 4135986