Remediate Redis, etcd, and pprof vulnerabilities in ZStack Cloud
Applicable scenario
- Product:
ZCF - Component:
Cloud - Versions:
4.8.x, 4.6.x - Deployment topology: dual management nodes
- Trigger: A vulnerability scan finds exposed
go-pprofandetcdports and unauthorized Redis access.
Symptoms
- The environment has:
poc-yaml-go-pprof-leakpoc-yaml-etcd-unauth- Unauthorized Redis access
- Remediation focuses on:
90912379- Redis authentication configuration
Sign in to view the rest of this article, plus more troubleshooting and solution know-how.
Sign in