Skip to content

Allow specifying Unix socket for server.listen_uri #4673

Description

@septatrix

What would you like to be added?

Currently the API endpoint only supports listening on a normal TCP port. I would like to see support for creating and listening on a Unix socket.

Why is this needed?

TCP Ports have several drawbacks. Collisions are the most common one and can confuse new users when setting up crowdsec. Especially as it uses port 8080 by default which is quote a common port already for any kind of HTTP server. Another drawback is limited access control for local processes. Any process running on the local machine (or some process gone rouge) can access the server.

UDS do not have these problems. They do not suffer from the same port collision issue and access can easily be controlled through the usual file and directory access permissions.

Especially the fact that this completely avoids port collision issues is very advantageous for those having their first go at crowdsec

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions