Nexus information on: Azure Key Leakage - Storm-0558 Nexus awareness advisory on Microsoft’s update KB5014754
The import folder path, configured in Salto, must be mounted to the Docker container, as Salto works on the file system. The import folder path can be mounted using either root user or rootless user.
The following steps are required for both Root user and Rootless user before you do the specific steps described in the sections below:
Install the cifs utility on the host machine:
apt install -y cifs-utils
Create the mnt/salto_share directory inside the Physical Access directory:
mkdir /mnt/salto_share
Mount the import folder path using the root user:
sudo mount -t cifs //<Salto_IP>/<import_path> /mnt/salto_share -o nobrl,username='<Salto_Windows_Admin_User>',password='<Admin_User_Password>'
Perform a test by creating a file in the mounted folder.
Prepare a credentials file for the mount. The credentials are for the Windows service account.
username=<WindowsSvcUser> password=<Pass> domain=<Domain>
Create the mount for the Docker user by adding the following line in /etc/fstab:
//<WindowsMachineIP>/<Folder> /home/<DockerUser>/docker/compose/physicalaccess/mnt/salto_share cifs credentials=/root/.credentials,uid=<uid>,gid=<gid>,dir_mode=0777,file_mode=0777,_netdev 0 0
If required, you can change the full permission (0777) for the dir_mode and file_mode parameters.
dir_mode
file_mode
Execute this command to mount:
mount -a
This article is added with the Smart ID 23.04 release.