--- title: "1.24.19 — Correct AL2023 firewall proof paths" description: "MojoSec now matches the firewall command paths used by the broker to the fixed executables AL2023 records in Audit, so proven cron-owned reconciliations stay local. Exact argv, digest, PID, receipt, and JobEngine checks remain required." date: "2026-09-09" tags: ["release"] canonical: "https://django-mojo.sitesmojo.com/changelog/1-24-19/" --- MojoSec now matches the firewall command paths used by the broker to the fixed executables AL2023 records in Audit, so proven cron-owned reconciliations stay local. Exact argv, digest, PID, receipt, and JobEngine checks remain required. ### Fixed - MojoSec now recognizes the fixed AL2023 Audit executables behind the broker's `/sbin/iptables`, `/sbin/iptables-save`, and `/sbin/ipset` commands. - Proven cron-owned firewall reconciliations stay local, while altered commands or incomplete proof remain ordinary central events.