-
Notifications
You must be signed in to change notification settings - Fork 1.5k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Clarify localhost usage in security documentation #9338
Comments
Hey, Take a look to that!
|
@professorabhay Would you be open to filing a PR to add this under this section https://github.com/open-telemetry/opentelemetry-collector/blob/main/docs/security-best-practices.md#safeguards-against-denial-of-service-attacks ? |
Sure @mx-psi! |
We can discuss in the PR itself, it's easier to make comments there |
Hey @mx-psi this is open from a week without any PR, I would like to address this one. I believe we can address this in more simple and precise language for users to understand. I would like to raise PR for the same.
|
…9444) **Description:** <Describe what has changed.> warning and alert for using localhost which might go under DNS resolution and end up with an unexpected IP, risking security. **Link to tracking Issue:** #9338 **Documentation:** Added Waring and risk alert in https://github.com/open-telemetry/opentelemetry-collector/blob/main/docs/security-best-practices.md --------- Co-authored-by: Pablo Baeyens <pbaeyens31+github@gmail.com>
Fixed by #9444 |
Originally posted by @bboreham in #8510 (comment)
The text was updated successfully, but these errors were encountered: