(stable/victoria and bellow) Sensitive values exposed in ansible.log
Bug #1918138 reported by
Cédric Jeanneret
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
tripleo |
Fix Released
|
Undecided
|
Cédric Jeanneret |
Bug Description
When we use mistral for the deployment, an ansible.log file is created in a non-secure way, in a non-secured location:
#getfacl /var/lib/
# owner: 42430
# group: 42430
user::rw-
group::r--
other::r-- ========> This is concern.
A simple patch in tripleo-
First reported as a private BZ at Red Hat (hence no link, sorry).
Changed in tripleo: | |
milestone: | wallaby-3 → wallaby-rc1 |
Changed in tripleo: | |
milestone: | wallaby-rc1 → xena-1 |
Changed in tripleo: | |
milestone: | xena-1 → xena-2 |
Changed in tripleo: | |
milestone: | xena-2 → xena-3 |
Changed in tripleo: | |
status: | Triaged → Fix Released |
To post a comment you must log in.
https:/ /review. opendev. org/c/openstack /tripleo- common/ +/779257