1
0
mirror of https://github.com/LaCasemate/fab-manager.git synced 2024-11-28 09:24:24 +01:00

(security) log4j format message lookup disabled by default

This commit is contained in:
Sylvain 2022-08-30 11:07:50 +02:00
parent b9c02742a1
commit 5429e9889f
3 changed files with 3 additions and 2 deletions

View File

@ -5,6 +5,7 @@
- Refactored test helpers
- Fix a bug: unable to generate statistics
- Fix a bug: the automated test on statistics generation was not running
- Fix a security issue: disable log4j format message lookup by default for new installations
- [TODO DEPLOY] `rails fablab:maintenance:regenerate_statistics[2022,07]`
## v5.4.16 2022 August 24

View File

@ -18,7 +18,7 @@ services:
elasticsearch:
image: elasticsearch:5.6
environment:
- "ES_JAVA_OPTS=-Xms512m -Xmx512m"
- "ES_JAVA_OPTS=-Xms512m -Xmx512m -Dlog4j2.formatMsgNoLookups=true"
ulimits:
memlock:
soft: -1

View File

@ -34,7 +34,7 @@ services:
elasticsearch:
image: elasticsearch:5.6
environment:
- "ES_JAVA_OPTS=-Xms512m -Xmx512m"
- "ES_JAVA_OPTS=-Xms512m -Xmx512m -Dlog4j2.formatMsgNoLookups=true"
ulimits:
memlock:
soft: -1