Tuesday, December 14, 2021

Log4j Notice


SERVICE UPDATE

December 13, 2:00 pm

Notice:
Our data center provider, Amazon AWS has warned of the recently disclosed security issue relating to the open-source Apache Log4j2 utility (CVE-2021-44228). They are actively monitoring this issue, and are working on addressing it for any AWS services which either use Log4j2 or provide it to customers as part of their service

Symptoms for RSI Customers:  
None identified. 

RSI does not use tools or applications designed with JAVA or the Log4j2 utility. There is a remote possibility that the Amazon stack for transmitting/receiving requests may have this issue. Again, this is not related to our servers.

If Amazon AWS is working on resolutions for their entire stack, there is the possibility of delays and timeouts as they patch and upgrade their pipelines.

Resolution: 
There is no recommended action to take by RSI or our customers.  

RSI Support Services.
support@telecost.com

More info from Amazon AWS:

https://aws.amazon.com/security/security-bulletins/AWS-2021-006/