Skip to content

Instantly share code, notes, and snippets.

@bgraw3
Forked from joshuap/redis.rb
Created December 4, 2018 14:42
Show Gist options
  • Save bgraw3/89cea75816ee8b454d381eb23e5a5486 to your computer and use it in GitHub Desktop.
Save bgraw3/89cea75816ee8b454d381eb23e5a5486 to your computer and use it in GitHub Desktop.
Disable dangerous Redis commands in Ruby
# config/initializers/redis.rb
require 'redis'
# Disables the `flushdb` and `flushall` commands.
class Redis
module DangerousCommands
def flushdb
raise 'This is EXTREMELY DANGEROUS! If you really want to EMPTY THE ENTIRE DATABASE, do it from `redis-cli`.'
# You could call `super` here if you want to allow access in some circumstances.
end
def flushall
raise 'This is EXTREMELY DANGEROUS! If you really want to FLUSH ALL DATABASES, do it from `redis-cli`.'
# You could call `super` here if you want to allow access in some circumstances.
end
end
prepend DangerousCommands
end
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment