Validation Checks for rsyncd.conf Files
The rsyncdchk command performs validation checks on the rsyncd.conf configuration file. It provides some amount of assurance that the rpki.net system is configured in a way that best supports the system's operation and security. rsyncdchk validation checks fall in the following group:
  • basic checks - simple system checks, such as the valid boolean fields, directories are directories

This checking group is described in more detail in the section below.

This document is prepared under Contract Number HSHQDC-14-C-B0035 for DHS S&T CSD

1. Basic Checks

Section Field Checks Performed
rootcommentno checks performed
pathdirectory exists, is readable and searchable
read onlyvalid Boolean
transfer loggingvalid Boolean
use chrootvalid Boolean
rpkicommentno checks performed
pathdirectory exists, is readable and searchable
read onlyvalid Boolean
transfer loggingvalid Boolean
use chrootvalid Boolean