GaloisInc / MATE

MATE is a suite of tools for interactive program analysis with a focus on hunting for bugs in C and C++ code using Code Property Graphs.
https://galoisinc.github.io/MATE/
BSD 3-Clause "New" or "Revised" License
177 stars 12 forks source link

doc: Deployment security considerations #41

Open langston-barrett opened 2 years ago

langston-barrett commented 2 years ago

MATE currently isn't safe to expose to the public facing internet, and won't be without a decent amount of service hardening. We should document the current security considerations required during a deployment (even a private one).

An incomplete list of aspects that need to be documented (and potentially fixed):

thebendavis commented 2 years ago

Agreed. Additionally, the notebook server is a major concern by its core functionality.