Skip to content

Commit

Permalink
Allow writes below /etc/nginx/conf.d
Browse files Browse the repository at this point in the history
The nginx docker hub container will write below that directory at
startup.
  • Loading branch information
mstemm committed Jul 14, 2017
1 parent 7388727 commit 4da5da0
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion rules/falco_rules.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -342,7 +342,7 @@
debconf-show, rollerd, bind9.postinst, sv,
gen_resolvconf., update-ca-certi, certbot)
and not proc.pname in (sysdigcloud_binaries)
and not fd.directory in (/etc/cassandra, /etc/ssl/certs/java, /etc/logstash)
and not fd.directory in (/etc/cassandra, /etc/ssl/certs/java, /etc/logstash, /etc/nginx/conf.d)
and not ansible_running_python
and not python_running_denyhosts
Expand Down

0 comments on commit 4da5da0

Please sign in to comment.