mirror of
https://github.com/vincentmli/bpfire.git
synced 2026-04-28 11:43:25 +02:00
suricata: Run as non-root user
This patch does not have any effect (yet) and is untested because suricata needs to be built against libcap-ng which is currently not being packaged for IPFire. Signed-off-by: Michael Tremer <michael.tremer@ipfire.org> Signed-off-by: Stefan Schantl <stefan.schantl@ipfire.org>
This commit is contained in:
committed by
Stefan Schantl
parent
2bec60c347
commit
38081b8be1
@@ -281,6 +281,15 @@ asn1-max-frames: 256
|
||||
##
|
||||
##############################################################################
|
||||
|
||||
##
|
||||
## Run Options
|
||||
##
|
||||
|
||||
# Run suricata as user and group.
|
||||
run-as:
|
||||
user: suricata
|
||||
group: suricata
|
||||
|
||||
# Suricata core dump configuration. Limits the size of the core dump file to
|
||||
# approximately max-dump. The actual core dump size will be a multiple of the
|
||||
# page size. Core dumps that would be larger than max-dump are truncated. On
|
||||
|
||||
Reference in New Issue
Block a user