[ops-messaging]Configuring rabbitmq default password with clear test is insecure
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
OpenStack + Chef |
Fix Released
|
Undecided
|
Ma Wen Cheng |
Bug Description
after use openstack-
cat /etc/rabbitmq/
[
{kernel, [
]},
{rabbit, [
{ssl_listeners, [5671]},
{ssl_options, [{cacertfile,
{tcp_
{default_user, <<"rabbit">>},
{default_pass, <<"password">>}
]}
].
The clear password should be removed for security purpose.
Fix proposed to branch: master /review. openstack. org/128570
Review: https:/