I-19.4% ye-1000 ephezulu ye-Docker iziqulathi iqulethe i-password yengcambu engenanto

UJerry Gamblin wagqiba ekubeni afumanise indlela olusasazeke ngayo olu lutsha lusandul’ ukuchongwa ingxaki kwiDocker imifanekiso yonikezelo lweAlpine, eyayanyaniswa nokuchaza igama eliyimfihlo elingenanto lomsebenzisi oyingcambu. Uhlalutyo lwamawaka ezona bhokisi zidumileyo kwikhathalogu yeDocker Hub ibonisiwe, yintoni kwi 194 kwezi (19.4%) igama eliyimfihlo elingenanto limiselwe ingcambu ngaphandle kokutshixa i-akhawunti (β€œroot:::0:::::” endaweni ye β€œroot:!::0::::”).

Ukuba isikhongozeli sisebenzisa isithunzi kunye neepakethe zelinux-pam, sebenzisa igama eligqithisiweyo lengcambu elingenanto it ivumela Yandisa amalungelo akho ngaphakathi kwesikhongozeli ukuba unofikelelo olungenachaphaza kwisikhongozeli okanye emva kokuxhaphaza ubuthathaka kwinkonzo engafanelekanga eqhuba kwisikhongozeli. Unako kwakhona ukudibanisa kwisikhongozeli ngamalungelo engcambu ukuba unokufikelela kwiziseko zophuhliso, okt. ukukwazi ukuqhagamshela nge-terminal ukuya kwi-TTY echazwe kuluhlu /etc/securetty. Ukungena ngegama eliyimfihlo elingenanto kuvaliwe nge-SSH.

Eyona idumileyo phakathi izikhongozeli ezinengcambu engenanto igama lokugqithisa yiyo microsoft/azure-cli, kylemanna/openvpn, governmentpaas/s3-resource, phpmyadmin/phpmyadmin, mesosphere/aws-cli ΠΈ hashicorp/terraform, ezinokukhutshelwa okungaphezulu kwezigidi ezili-10. Izikhongozeli nazo zibalaselisiwe
govuk/gemstash-alpine (500 amawaka), monsantoco/logstash (5 yezigidi),
avhost/docker-matrix-riot (1 yezigidi),
azuresdk/azure-cli-python (5 yezigidi)
ΠΈ ciscocloud/haproxy-consul (Isigidi esi-1). Phantse zonke ezi zikhongozeli zisekelwe kwi-Alpine kwaye ungasebenzisi isithunzi kunye neepakethi ze-linux-pam. Ukuphela kwemeko yi-microsoft/azure-cli esekwe kwiDebian.

umthombo: opennet.ru

Yongeza izimvo