SumoLogic / sumologic-otel-collector

Sumo Logic Distribution for OpenTelemetry Collector
Apache License 2.0
40 stars 36 forks source link

OpAMP agent setting to disable remote management of monitoringjobs receiver #1271

Open portertech opened 11 months ago

portertech commented 11 months ago

We are actively developing the monitoringjobs receiver which schedules the execution of local host commands. We are concerned that this receiver introduces a potential security risk when combined with remote management. In order to control the risk, we need to add a OpAMP agent setting to enable the remote management of the monitoringjobs receiver(s).

Possible Implementations

Inspect ALLOW/DENY Remote Configuration

portertech commented 9 months ago

Related: https://github.com/open-telemetry/opamp-spec/blob/main/specification.md#configuration-restrictions