|author||russell <russell@f38db490-d61c-443f-a65b-d21fe96a405b>||2007-03-14 16:40:22 +0000|
|committer||russell <russell@f38db490-d61c-443f-a65b-d21fe96a405b>||2007-03-14 16:40:22 +0000|
Merged revisions 58896 via svnmerge from
https://origsvn.digium.com/svn/asterisk/branches/1.2 ........ r58896 | russell | 2007-03-14 11:38:48 -0500 (Wed, 14 Mar 2007) | 3 lines Add a note to the security file that the Asterisk CLI and log files may contain sensitive information, and that people should keep this in mind. ........ git-svn-id: http://svn.digium.com/svn/asterisk/branches/1.4@58897 f38db490-d61c-443f-a65b-d21fe96a405b
Diffstat (limited to 'doc')
1 files changed, 6 insertions, 0 deletions
diff --git a/doc/security.txt b/doc/security.txt
index 3290cba48..0801679cc 100644
@@ -65,3 +65,9 @@ exten => 6123,Dial(Zap/1)
DON'T FORGET TO TAKE THE DEMO CONTEXT OUT OF YOUR DEFAULT CONTEXT. There
isn't really a security reason, it just will keep people from wanting to
play with your Asterisk setup remotely.
+* LOG SECURITY
+Please note that the Asterisk log files, as well as information printed to the
+Asterisk CLI, may contain sensitive information such as passwords and call
+history. Keep this in mind when providing access to these resources.