1
0
mirror of https://github.com/LaCasemate/fab-manager.git synced 2025-02-26 20:54:21 +01:00

(security) log4j format message lookup disabled by default

This commit is contained in:
Sylvain 2022-08-30 11:07:50 +02:00
parent b9c02742a1
commit 5429e9889f
3 changed files with 3 additions and 2 deletions

View File

@ -5,6 +5,7 @@
- Refactored test helpers - Refactored test helpers
- Fix a bug: unable to generate statistics - Fix a bug: unable to generate statistics
- Fix a bug: the automated test on statistics generation was not running - Fix a bug: the automated test on statistics generation was not running
- Fix a security issue: disable log4j format message lookup by default for new installations
- [TODO DEPLOY] `rails fablab:maintenance:regenerate_statistics[2022,07]` - [TODO DEPLOY] `rails fablab:maintenance:regenerate_statistics[2022,07]`
## v5.4.16 2022 August 24 ## v5.4.16 2022 August 24

View File

@ -18,7 +18,7 @@ services:
elasticsearch: elasticsearch:
image: elasticsearch:5.6 image: elasticsearch:5.6
environment: environment:
- "ES_JAVA_OPTS=-Xms512m -Xmx512m" - "ES_JAVA_OPTS=-Xms512m -Xmx512m -Dlog4j2.formatMsgNoLookups=true"
ulimits: ulimits:
memlock: memlock:
soft: -1 soft: -1

View File

@ -34,7 +34,7 @@ services:
elasticsearch: elasticsearch:
image: elasticsearch:5.6 image: elasticsearch:5.6
environment: environment:
- "ES_JAVA_OPTS=-Xms512m -Xmx512m" - "ES_JAVA_OPTS=-Xms512m -Xmx512m -Dlog4j2.formatMsgNoLookups=true"
ulimits: ulimits:
memlock: memlock:
soft: -1 soft: -1