This warning doesn't seem to cause any harm.

But it should probably be document that nobody should put secret data
into .service units (e.g. through Netplan's OVS integration), because
that would still be world readable by calling "systemctl cat
UNIT_NAME.service".

We should update Netplan's threat model about that
https://netplan.readthedocs.io/en/stable/security/

** Tags added: docs documentation

** Changed in: netplan.io (Ubuntu)
       Status: New => Triaged

** Changed in: netplan.io (Ubuntu)
   Importance: Undecided => Low

** Tags added: foundations-todo

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2072486

Title:
  netplan-ovs-cleanup.service is marked world-inaccessible

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/netplan.io/+bug/2072486/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to