浏览代码

Merge pull request #1547 from sdodson/cert-perms

Lock down generated certs dir
Brenton Leanhardt 9 年之前
父节点
当前提交
84840dda51
共有 1 个文件被更改,包括 1 次插入0 次删除
  1. 1 0
      roles/openshift_node_certificates/tasks/main.yml

+ 1 - 0
roles/openshift_node_certificates/tasks/main.yml

@@ -3,6 +3,7 @@
   file:
     path: "{{ openshift_generated_configs_dir }}"
     state: directory
+    mode: 0700
   when: nodes_needing_certs | length > 0
 
 - name: Generate the node client config