Vitess security auditattacks such as cross-site scripting, if an attacker manages to pass valid javascript into the templates. Ada Logics found the following parts of Vitess to be impacted: https://github.com/vitessio/v user-controlled data could be passed to any of the templates to launch an XSS attack. Such an attack can be highly critical, since some of the templates are meant to be viewed by a Vitess admin. At the time time of the audit, the Vitess maintainers found that the parameters passed to the templates were only user-controlled in one of the cases. This case was triaged heavily and the Vitess team found that an0 码力 | 41 页 | 1.10 MB | 1 年前3
The Vitess 9.0 Documentationagreed by maintainers provide a Template that will help streamline the above areas. For Issue Templates please refer to this section. #### Solution The suggested solution would be creating general guidelines first two parts of the PR/Issue to use GitHub labels. • How to write good pull requests via GitHub templates link 40 Call for feedback We’re looking for the community’s feedback on the above suggestions/flow into the design trade-offs of the Vitess on Kubernetes deployment templates. Please note the Vitess on Kubernetes deployment templates were removed as of February 27, 2020. {{< pdf src=“/ViewerJS/#..0 码力 | 417 页 | 2.96 MB | 1 年前3
The Vitess 11.0 Documentationagreed by maintainers provide a Template that will help streamline the above areas. For Issue Templates please refer to this section. Solution Naming Convention The suggested solution would be creating labels may be added as appropriate. Other Suggestions • How to write good pull requests via GitHub templates link 43 Call for feedback We’re looking for the community’s feedback on the above suggestions/flow into the design trade-offs of the Vitess on Kubernetes deployment templates. Please note the Vitess on Kubernetes deployment templates were removed as of February 27, 2020. {{< pdf src=“/ViewerJS/#..0 码力 | 481 页 | 3.14 MB | 1 年前3
The Vitess 10.0 Documentation
agreed by maintainers provide a Template that will help streamline the above areas. For Issue Templates please refer to this section. Solution The suggested solution would be creating general guidelines first two parts of the PR/Issue to use GitHub labels. • How to write good pull requests via GitHub templates link 41 Call for feedback We’re looking for the community’s feedback on the above suggestions/flow into the design trade-offs of the Vitess on Kubernetes deployment templates. Please note the Vitess on Kubernetes deployment templates were removed as of February 27, 2020. {{< pdf src=“/ViewerJS/#..0 码力 | 455 页 | 3.07 MB | 1 年前3
The Vitess 6.0 DocumentationKubernetes, followed by a deep dive into the design trade-offs of the Vitess on Kubernetes deployment templates. {{< pdf src=“/ViewerJS/#../files/coreos-meetup-2016-01-27.pdf” >}} Oracle OpenWorld 2015 Vitess human errors and simplify the process of managing all instances. As of June 2016 we do not have templates for any major open-source configuration management software because our internal upgrade process process is based on a proprietary software. Therefore, we invite open-source users to contribute such templates. Any upgrade should be a rolling release i.e. usually one tablet at a time within a shard. This0 码力 | 210 页 | 846.79 KB | 1 年前3
The Vitess 5.0 DocumentationKubernetes, followed by a deep dive into the design trade-offs of the Vitess on Kubernetes deployment templates. Oracle OpenWorld 2015 Vitess team member Anthony Yeh’s talk at Oracle OpenWorld 2015 focused human errors and simplify the process of managing all instances. As of June 2016 we do not have templates for any major open-source configuration management software because our internal upgrade process process is based on a proprietary software. Therefore, we invite open-source users to contribute such templates. Any upgrade should be a rolling release i.e. usually one tablet at a time within a shard. This0 码力 | 206 页 | 875.06 KB | 1 年前3
The Vitess 7.0 DocumentationKubernetes, followed by a deep dive into the design trade-offs of the Vitess on Kubernetes deployment templates. {{< pdf src=“/ViewerJS/#../files/coreos-meetup-2016-01-27.pdf” >}} Oracle OpenWorld 2015 Vitess human errors and simplify the process of managing all instances. As of June 2016 we do not have templates for any major open-source configuration management software because our internal upgrade process process is based on a proprietary software. Therefore, we invite open-source users to contribute such templates. Any upgrade should be a rolling release i.e. usually one tablet at a time within a shard. This0 码力 | 254 页 | 949.63 KB | 1 年前3
The Vitess 12.0 Documentationagreed by maintainers provide a Template that will help streamline the above areas. For Issue Templates please refer to this section. Solution Naming Convention The suggested solution would be creating labels may be added as appropriate. Other Suggestions • How to write good pull requests via GitHub templates link 47 Call for feedback We’re looking for the community’s feedback on the above suggestions/flow into the design trade-offs of the Vitess on Kubernetes deployment templates. Please note the Vitess on Kubernetes deployment templates were removed as of February 27, 2020. {{< pdf src=“/ViewerJS/#..0 码力 | 534 页 | 3.32 MB | 1 年前3
The Vitess 8.0 DocumentationKubernetes, followed by a deep dive into the design trade-offs of the Vitess on Kubernetes deployment templates. {{< pdf src=“/ViewerJS/#../files/coreos-meetup-2016-01-27.pdf” >}} Oracle OpenWorld 2015 Vitess human errors and simplify the process of managing all instances. As of June 2016 we do not have templates for any major open-source configuration management software because our internal upgrade process process is based on a proprietary software. Therefore, we invite open-source users to contribute such templates. Any upgrade should be a rolling release i.e. usually one tablet at a time within a shard. This0 码力 | 331 页 | 1.35 MB | 1 年前3
共 9 条
- 1













