Jira (PDB-2392) PQL: Support bind variables

6 views
Skip to first unread message

Kenneth Barber (JIRA)

unread,
Feb 5, 2016, 8:50:03 AM2/5/16
to puppe...@googlegroups.com
Kenneth Barber created an issue
 
PuppetDB / New Feature PDB-2392
PQL: Support bind variables
Issue Type: New Feature New Feature
Assignee: Unassigned
Created: 2016/02/05 5:49 AM
Priority: Normal Normal
Reporter: Kenneth Barber

Right now, we don't have a way to pass variables and data outside of the string. This can cause some security concerns in downstream applications, plus its means variable interpolation is required which can be annoying and troublesome.

The rough idea would be to support the `?` notation, and pass data variables out of band from the query itself.

For those concerned about security for now, we recommend using the stable AST query language if there is any general fear, as it makes variable inter-placement much more secure.

/cc Russell Mull does this sound about right?

Add Comment Add Comment
 
This message was sent by Atlassian JIRA (v6.4.12#64027-sha1:e3691cc)
Atlassian logo

Russell Mull (JIRA)

unread,
Feb 5, 2016, 11:50:04 AM2/5/16
to puppe...@googlegroups.com

Kenneth Barber (JIRA)

unread,
Mar 8, 2016, 10:10:18 AM3/8/16
to puppe...@googlegroups.com
Kenneth Barber updated an issue
Change By: Kenneth Barber
Sprint: PuppetDB 2016- 03 04 - 23 06

Wyatt Alt (JIRA)

unread,
Mar 17, 2016, 4:19:03 PM3/17/16
to puppe...@googlegroups.com
Wyatt Alt commented on New Feature PDB-2392

we recommend using the stable AST query language if there is any general fear, as it makes variable inter-placement much more secure.

Kenneth Barber can you explain how this is true?

Kenneth Barber (JIRA)

unread,
Mar 22, 2016, 3:15:03 PM3/22/16
to puppe...@googlegroups.com
Kenneth Barber updated an issue
Change By: Kenneth Barber
Sprint: PuppetDB 2016-04- 06 20
This message was sent by Atlassian JIRA (v6.4.13#64028-sha1:b7939e9)
Atlassian logo

Susan McNerney (JIRA)

unread,
Apr 6, 2016, 12:17:04 PM4/6/16
to puppe...@googlegroups.com
Susan McNerney updated an issue
Change By: Susan McNerney
Sprint: PuppetDB 2016- 05- 04 -20

Ryan Senior (JIRA)

unread,
Apr 6, 2016, 12:19:04 PM4/6/16
to puppe...@googlegroups.com
Ryan Senior updated an issue
Change By: Ryan Senior
Sprint: PuppetDB 2016-04-20 Hopper

Ryan Senior (JIRA)

unread,
May 23, 2016, 5:47:03 PM5/23/16
to puppe...@googlegroups.com
Ryan Senior updated an issue
Change By: Ryan Senior
Sprint: Hopper

Claudia Petty (Jira)

unread,
Jun 21, 2023, 10:57:11 AM6/21/23
to puppe...@googlegroups.com
Claudia Petty updated an issue
Change By: Claudia Petty
Labels: new-feature
This message was sent by Atlassian Jira (v8.20.21#820021-sha1:38274c8)
Atlassian logo
Reply all
Reply to author
Forward
0 new messages