Uploaded image for project: 'AeroGear'
  1. AeroGear
  2. AEROGEAR-5805

Prevent slaves from executing actions on the master

    XMLWordPrintable

Details

    Description

      Target

      Configure Slave2Master access control for jenkins
      Prevent Jenkins slave subsystem to access master and some restricted plugins.

      Introduction

      Historically, Jenkins master and slaves behaved as if they altogether form a single distributed process. This means a slave can ask a master to do just about anything within the confinement of the operating system, such as accessing files on the master or trigger other jobs on Jenkins.

      https://wiki.jenkins-ci.org/display/JENKINS/Slave+To+Master+Access+Control

      Goals

      • Turn on master to slave security in jenkins and provide new jenkins image
      • Document how to extend this functionality in future (whitelist some plugins/files)
      • Verify if slave can request or execute actions on master.

      Attachments

        Issue Links

          Activity

            People

              wtrocki@redhat.com Wojciech Trocki
              wtrocki@redhat.com Wojciech Trocki
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: