[cmd/opampsupervisor] Specify requirements and mechanism for filesystem restrictions #24310
Labels
cmd/opampsupervisor
discussion needed
Community discussion needed
enhancement
New feature or request
never stale
Issues marked with this label will be never staled and automatically removed
Component(s)
cmd/opampsupervisor
Is your feature request related to a problem? Please describe.
Remote configuration of the Collector has the potential to be an avenue for malicious actors to exfiltrate information from a system using the Collector. We need to ensure users are equipped with the tools necessary to mitigate this risk.
Describe the solution you'd like
One question we will want to answer is what is in scope for these protections:
For controlling filesystem access, one solution could be to specify in the Supervisor config (which cannot be remotely updated through OpAMP) which directories are permitted. Directories used in the Collector's config would then be validated against this list. The behavior the Supervisor takes if a directory fails validation still needs to be determined.
Other alternatives to controlling filesystem access:
Describe alternatives you've considered
No response
Additional context
See the discussion on the Google Doc here: https://docs.google.com/document/d/1KtH5atZQUs9Achbce6LiOaJxLbksNJenvgvyKLsJrkc/edit?pli=1&disco=AAAAkWOtq4M
The text was updated successfully, but these errors were encountered: