Skip to content

Commit

Permalink
Let mysql_ssl_rsa_s spawn shells
Browse files Browse the repository at this point in the history
Part of mysql ssl key generation.
  • Loading branch information
mstemm committed Sep 6, 2017
1 parent a006a7a commit 55f55be
Showing 1 changed file with 2 additions and 2 deletions.
4 changes: 2 additions & 2 deletions rules/falco_rules.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -570,7 +570,7 @@
landscape-sysin, nessusd, PM2, syslog-summary, erl_child_setup,
npm, cloud-init, toybox, ceph, hhvm, certbot, mysql_install_d,
serf, a2enmod, runsv, supervisord, varnishd, authconfig, tini,
timeout, updatedb.findut
timeout, updatedb.findut, mysql_ssl_rsa_s
]

- rule: Run shell untrusted
Expand Down Expand Up @@ -744,7 +744,7 @@
monitoring_binaries, gitlab_binaries, initdb, pg_ctl, awk, falco, cron,
erl_child_setup, ceph, PM2, pycompile, py3compile, hhvm, npm, mysql_install_d, serf,
runsv, supervisord, varnishd, crond, logrotate, timeout, tini,
xrdb, xfce4-session, weave)
xrdb, xfce4-session, weave, mysql_ssl_rsa_s)
and not trusted_containers
and not shell_spawning_containers
and not parent_java_running_echo
Expand Down

0 comments on commit 55f55be

Please sign in to comment.