Skip to content

Fix/confd hardening - #1659

Draft
mattiaswal wants to merge 8 commits into
mainfrom
fix/confd-hardening
Draft

mattiaswal wants to merge 8 commits into
mainfrom
fix/confd-hardening

Conversation

@mattiaswal

Copy link
Copy Markdown
Contributor

Description

Checklist

Tick relevant boxes, this PR is-a or has-a:

  • Bugfix
    • Regression tests
    • ChangeLog updates (for next release)
  • Feature
    • YANG model change => revision updated?
    • Regression tests added?
    • ChangeLog updates (for next release)
    • Documentation added?
  • Test changes
    • Checked in changed Readme.adoc (make test-spec)
    • Added new test to group Readme.adoc and yaml file
  • Code style update (formatting, renaming)
  • Refactoring (please detail in commit messages)
  • Build related changes
  • Documentation content changes
    • ChangeLog updated (for major changes)
  • Other (please describe):

@mattiaswal
mattiaswal force-pushed the fix/confd-hardening branch 4 times, most recently from 1133e61 to ff62c68 Compare September 26, 2026 11:56
The name reaches iw.py and the hostapd path; the pattern allows every probed name, including device-tree unit addresses like sfp@9.
The command is written into a shell script run as root.
Its rc.d scripts and default files run as root.
Both are written into the dnsmasq dhcp-host line.
Both are written into quoted fields in syslog.conf.
The names are passed to mksshkey and used as file names.
Without it a syslog-only change took effect only after reboot.
Written into wpa_supplicant/hostapd config; AP/mesh passphrases now validated like station.

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant