rabbot icon indicating copy to clipboard operation
rabbot copied to clipboard

replyTo Queue: Should it be exclusive by default?

Open ptusch opened this issue 6 years ago • 0 comments

Hey there,

I was wondering if the replyTo queue should be exclusive by default. If it remains without exclusive it could open attackspace. Surely, it's a really rare occurance but still possible.

The exclusive flag should deny any access from someone else than the creator of the queue so nobody would be able to install a queue hook there.

What are your thoughts on this?

I tried to implement this but many tests fail in the after/before steps and I couldn't figure out how to fix it fastly. But the change smells like you would like to think about it so I figured it makes more sense to wait for your reply.

ptusch avatar Mar 06 '18 14:03 ptusch