Skip to content

Potential insecure security ref? #166

Description

@debuggerchen

Hi, I noticed that the controllers of multiple namespace-scoped CRs, such as Cinder, may reference secrets in another namespace via Ceph, which may enable a namespace-scoped user to reference secrets in their unauthorized namespace. Will that be a issue?

Activity

  1. ianunruh commented on Nov 3, 2025

    @ianunruh
    Owner

    Thanks for the report. You are correct that this method could leak secrets across namespaces. However, this operator is very closely tied to the K8s cluster itself (ie. it ends up taking over whole nodes due to the nature of OpenStack/OVN) and is intended to be used only by a cluster administrator. Non-admins should not be given the RBAC privileges to create these CRDs in their own namespaces.

    Additionally, this operator is very much experimental and has not been vetted for security. It should not be used in real production clusters, only for testing/development purposes.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions