
SamuelBaughan asked a question.
Settings definition: EXTENSIONS_WHITELIST and EXTENSIONS_BLACKLIST
Hi all,
Anyone knows what exactly those 2 SLM console settings are for?
- EXTENSIONS_WHITELIST
- EXTENSIONS_BLACKLIST
In our console, the Whitelist is empty and the Blacklist is full of extensions, including "EXE"
Is it part of a legacy feature?
Hi Samuel,
I believe this is a legacy feature from back in the day when it was possible to block applications from being launched when they were in a black list. This is no longer used. I will dig around to see if I can find more information.
Kind regards,
Jelle
@Samuel Baughan​ this sounds like one for the ideas board then :-)
@Jelle Wijndelts​ it would be good to have these redundant settings removed from the SMACC.
Thanks to you both, it's good to know, we thought these setting were no longer used.
The Extension_blacklist and extension_whitelist is not connected to the inventory data at all and will not affect what applications or files that are shown on a computer in Snow License Manager.
These two settings are to control what kind of files you can upload as attached documents to Snow License Manager, for example Licenses and Agreements. For more information see article 000036901.
The default blacklist extensions will for example not allow an exe file to be attached as a document to an agreement in SLM.
If you instead specify ALLOWED extensions, only those will be allowed. So if you enter txt,pdf,doc in the extension allowlist, only these kind of files will be allowed as attachments in SLM. Attaching another type of file will show a warning message in SLM, and you will not be allowed to save the change.
Hi Jelle, Hi Samuel,
NO - those settings are NOT 'Legacy', NOR outdated/deprecated and therefore no need to be 'removed from SMACC'.
These settings are still part of the documentation for SLM9.18 and are currently mentioned and used e.g.: in the following (highly actual) KB How Snow can help with CVE-2021-44228 (aka, "Log4Shell")
Looking at that thread, you may get a better understanding as to what you can achieve with those settings (albeit the documentation should really be revised/extended)