From 1b4ac2b6d767b160980d8c2190b665ba8677062d Mon Sep 17 00:00:00 2001 From: Mikaela Suomalainen Date: Mon, 13 Dec 2021 13:09:35 +0200 Subject: [PATCH] etc/systemd/system.conf.d: add log4shell.conf --- etc/systemd/system.conf.d/log4shell.conf | 5 +++++ 1 file changed, 5 insertions(+) create mode 100644 etc/systemd/system.conf.d/log4shell.conf diff --git a/etc/systemd/system.conf.d/log4shell.conf b/etc/systemd/system.conf.d/log4shell.conf new file mode 100644 index 00000000..85fe8ffc --- /dev/null +++ b/etc/systemd/system.conf.d/log4shell.conf @@ -0,0 +1,5 @@ +# Mitigating log4shell exploit (CVE-2021-44228) systemd-wide + +[Manager] +# NCSC-FI https://www.kyberturvallisuuskeskus.fi/fi/haavoittuvuus_38/2021?toggle=Lis%C3%A4tietoa%20ratkaisusta +DefaultEnvironment="LOG4J_FORMAT_MSG_NO_LOOKUPS=true"