Project

General

Profile

Actions

Bug #6043

closed

Rudder accepts inventories from outside the allowed networks

Added by Nicolas CHARLES over 9 years ago. Updated about 7 years ago.

Status:
Rejected
Priority:
1
Assignee:
-
Category:
Web - Nodes & inventories
Target version:
Severity:
UX impact:
User visibility:
Effort required:
Priority:
Name check:
Fix check:
Regression:

Description

On Rudder 2.11, Rudder accepts inventories that are outside of the allowed networks. When we accept them afterwards, all hell break loose as they can't access ncf nor tools.
We should not receive them in the first place, this is a security threat.

May also happen on 2.10


Related issues 1 (0 open1 closed)

Has duplicate Rudder - Bug #6240: Nodes outside the allowed networks have their inventories accepted into RudderRejectedActions
Actions

Also available in: Atom PDF