Jira (PUP-9585) Do not output password for user type if it is marked Sensitive

12 views
Skip to first unread message

Kris Bosland (JIRA)

unread,
Mar 28, 2019, 1:12:04 PM3/28/19
to puppe...@googlegroups.com
Kris Bosland created an issue
 
Puppet / Improvement PUP-9585
Do not output password for user type if it is marked Sensitive
Issue Type: Improvement Improvement
Assignee: Unassigned
Created: 2019/03/28 10:11 AM
Fix Versions: PUP 5.5.z, PUP 6.0.z
Priority: Normal Normal
Reporter: Kris Bosland

Passwords for the user type are output in Debug logging, even if the value is marked Sensitive.  Instead, this should be written as "[redacted]" in the log.

Add Comment Add Comment
 
This message was sent by Atlassian JIRA (v7.7.1#77002-sha1:e75ca93)
Atlassian logo

Kris Bosland (JIRA)

unread,
Mar 28, 2019, 1:17:04 PM3/28/19
to puppe...@googlegroups.com
Kris Bosland updated an issue
Change By: Kris Bosland
Passwords for the Reproduction steps:
{code:java}$ cat foo.pp
class foo {
user type are output in Debug logging {'foo':
    ensure => present
, even if the value is marked
    password =>
Sensitive .  Instead, this should be written as ( " [redacted] foo " in the log )
  }
}

include foo

{code}
 
{code:java}puppet apply foo
. pp --debug{code}
 
{code:java}Info: Applying configuration version '8ef5cbfc620ff86bc1c8c02a56c5dc16d3630db4'
Debug: Executing: '/sbin/useradd -p foo -M foo'

{code}
 

Josh Cooper (JIRA)

unread,
Apr 9, 2019, 6:03:04 PM4/9/19
to puppe...@googlegroups.com
Josh Cooper updated an issue
Change By: Josh Cooper
Sprint: Platform Core KANBAN Coremunity Grooming

Kris Bosland (JIRA)

unread,
Apr 16, 2019, 4:04:02 PM4/16/19
to puppe...@googlegroups.com

Kris Bosland (JIRA)

unread,
Apr 23, 2019, 1:09:04 PM4/23/19
to puppe...@googlegroups.com
Kris Bosland updated an issue
Change By: Kris Bosland
Sprint: Coremunity Grooming Platform Core KANBAN

Josh Cooper (JIRA)

unread,
Aug 6, 2019, 12:27:03 PM8/6/19
to puppe...@googlegroups.com

Josh Cooper (JIRA)

unread,
Aug 6, 2019, 12:33:04 PM8/6/19
to puppe...@googlegroups.com
Josh Cooper updated an issue
 
Change By: Josh Cooper
Fix Version/s: PUP 6.0.z
Fix Version/s: PUP 5.5.z
Fix Version/s: PUP 6.4.4
Fix Version/s: PUP 5.5.17
Fix Version/s: PUP 6.0.11

Kris Bosland (JIRA)

unread,
Aug 6, 2019, 2:40:03 PM8/6/19
to puppe...@googlegroups.com
Kris Bosland updated an issue
Change By: Kris Bosland
Release Notes Summary: User providers will not output exec command lines with passwords during debugging level logging.
Release Notes: Bug Fix

Josh Cooper (JIRA)

unread,
Aug 12, 2019, 1:35:04 PM8/12/19
to puppe...@googlegroups.com

Josh Cooper (JIRA)

unread,
Aug 12, 2019, 1:39:53 PM8/12/19
to puppe...@googlegroups.com

Jean Bond (JIRA)

unread,
Aug 19, 2019, 6:56:04 PM8/19/19
to puppe...@googlegroups.com
Jean Bond updated an issue
 
Change By: Jean Bond
Labels: resolved-issue-added

Josh Cooper (JIRA)

unread,
Sep 16, 2019, 2:59:05 PM9/16/19
to puppe...@googlegroups.com
Reply all
Reply to author
Forward
0 new messages