Uploaded image for project: 'Couchbase Server'
  1. Couchbase Server
  2. MB-14604

GoXDCR: Migration Service leaks rest credentials during upgrade

    XMLWordPrintable

Details

    • Bug
    • Resolution: Fixed
    • Blocker
    • 4.0.0
    • 4.0.0
    • XDCR
    • Security Level: Public
    • None
    • centOS 6.x
    • Untriaged
    • No

    Description

      Build


      4.0.0-1869

      Found during investigation of MB-14600.

      During upgrade and subsequent migration of erlang xdcr metadata to goxdcr, rest username and password are leaked in goxdcr.log.

      MigrationService 2015-04-16T20:29:52.803-07:00 [INFO] Remote cluster constructed = &

      {remoteCluster/7465eb07aa9978212edf0fa868240601 7465eb07aa9978212edf0fa868240601 remote_cluster_C2-C1 10.1.2.11:8091 Administrator password true [45 45 45 45 45 66 69 71 73 78 32 67 69 82 84 73 70 73 67 65 84 69 45 45 45 45 45 10 77 73 73 67 109 68 67 67 65 89 75 103 65 119 73 66 65 103 73 73 69 57 87 118 78 110 87 121 88 121 115 119 67 119 89 74 75 111 90 73 104 118 99 78 65 81 69 70 77 65 119 120 67 106 65 73 66 103 78 86 66 65 77 84 10 65 83 111 119 72 104 99 78 77 84 77 119 77 84 65 120 77 68 65 119 77 68 65 119 87 104 99 78 78 68 107 120 77 106 77 120 77 106 77 49 79 84 85 53 87 106 65 77 77 81 111 119 67 65 89 68 86 81 81 68 69 119 69 113 10 77 73 73 66 73 106 65 78 66 103 107 113 104 107 105 71 57 119 48 66 65 81 69 70 65 65 79 67 65 81 56 65 77 73 73 66 67 103 75 67 65 81 69 65 118 97 65 72 57 105 106 76 80 49 90 74 99 121 104 113 107 80 118 101 10 112 88 84 75 105 57 53 72 43 83 51 108 74 73 120 53 52 80 86 105 121 101 73 52 109 43 55 82 97 107 57 105 117 83 72 80 67 118 100 79 68 78 51 66 103 82 89 114 79 87 75 117 56 86 70 85 47 53 56 69 108 82 57 100 10 75 114 71 55 98 49 104 103 43 76 68 80 105 53 105 97 56 49 48 68 78 48 75 75 113 80 73 97 108 53 87 73 112 88 57 57 70 116 43 120 49 88 88 106 81 119 97 98 116 50 66 99 111 67 87 108 72 43 56 104 66 67 68 71 10 97 110 65 100 78 71 57 67 71 56 74 78 84 72 98 99 89 73 89 47 47 81 105 101 90 86 52 86 112 110 97 87 88 85 121 66 107 68 121 82 76 73 88 47 111 84 98 112 78 81 90 66 77 114 99 106 104 80 101 97 43 86 115 89 10 50 57 74 77 53 109 52 83 65 104 87 99 55 114 43 104 53 71 107 74 116 85 55 119 122 122 87 118 49 102 51 78 100 65 120 105 65 49 83 68 71 81 79 105 118 43 81 99 55 47 87 89 79 101 54 122 84 79 120 100 99 116 82 88 10 84 106 53 49 90 67 56 43 47 53 88 116 101 86 112 109 84 84 73 117 108 49 107 84 43 102 51 104 49 105 77 68 50 120 79 112 106 48 106 71 105 116 54 113 74 57 49 76 69 75 55 113 102 66 75 48 48 118 113 120 90 116 98 71 10 89 81 73 68 65 81 65 66 111 119 73 119 65 68 65 76 66 103 107 113 104 107 105 71 57 119 48 66 65 81 85 68 103 103 69 66 65 65 72 77 118 53 72 110 72 108 75 114 104 101 78 108 50 120 70 114 43 72 101 115 115 82 55 90 10 49 101 118 70 53 84 100 52 102 65 86 90 68 118 102 99 122 71 68 105 110 105 113 118 53 108 98 68 48 73 119 69 43 102 57 82 54 122 75 117 65 103 43 97 68 84 86 84 98 122 50 99 76 97 112 50 87 122 116 78 119 116 90 43 10 118 83 68 108 77 118 77 108 53 80 56 70 110 114 100 87 116 120 56 52 75 90 105 57 72 73 43 120 108 50 85 69 53 50 107 49 89 103 74 103 84 83 97 89 70 102 101 56 83 67 70 85 110 66 53 82 117 43 49 52 102 105 85 89 10 108 112 70 100 66 69 107 84 81 109 111 116 85 74 87 65 55 108 69 88 56 104 72 71 69 87 73 101 76 71 98 101 114 119 101 66 111 98 121 53 87 73 48 69 97 97 85 111 112 55 83 67 79 99 85 120 112 90 107 71 111 70 57 101 10 84 72 98 82 90 107 109 119 71 104 49 114 49 67 54 56 101 57 118 74 103 72 83 122 90 110 114 100 88 98 81 51 86 121 78 69 98 78 104 108 98 97 109 79 66 90 103 69 84 105 86 119 109 86 69 105 89 66 107 48 99 120 119 81 10 80 112 69 112 83 69 114 48 83 100 118 121 116 47 112 111 116 52 89 83 113 110 98 122 73 73 102 71 89 48 121 108 109 103 88 108 53 90 117 49 71 56 76 104 119 88 100 89 101 79 50 114 99 43 69 76 65 50 103 61 10 45 45 45 45 45 69 78 68 32 67 69 82 84 73 70 73 67 65 84 69 45 45 45 45 45 10] <nil>}

      dataBytes_str={"remoteClusters":[

      {"name":"remote_cluster_C1-C2","hostname":"10.1.2.19:8091","username":"Administrator","uuid":"b58c5f4927e19f6bee1a426f151f4622","deleted":false,"password":"password","demandEncryption":true,"certificate":"-----BEGIN CERTIFICATE-----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\nMfWlouJfmS6OBVY4NgtteoGNqXVCW9EMzwTqnky49BL3n4pjUijYs5ikMxY=\n-----END CERTIFICATE-----\n"}

      ],"replicationDocs":[

      {"id":"b58c5f4927e19f6bee1a426f151f4622/sasl_bucket_1/sasl_bucket_1","type":"xdc-xmem","source":"sasl_bucket_1","target":"/remoteClusters/b58c5f4927e19f6bee1a426f151f4622/buckets/sasl_bucket_1","continuous":true}

      ,

      {"id":"b58c5f4927e19f6bee1a426f151f4622/default/default","type":"xdc-xmem","source":"default","target":"/remoteClusters/b58c5f4927e19f6bee1a426f151f4622/buckets/default","continuous":true}

      ],"replicationSettings":{"maxConcurrentReps":16,"checkpointInterval":60,"docBatchSizeKb":2048,"failureRestartInterval":30,"workerBatchSize":500,"connectionTimeout":180,"workerProcesses":4,"httpConnections":20,"retriesPerRequest":2,"optimisticReplicationThreshold":256,"socketOptions":

      {"keepalive":true,"nodelay":false}

      ,"pauseRequested":false,"supervisorMaxR":25,"supervisorMaxT":5}}

      Attachments

        No reviews matched the request. Check your Options in the drop-down menu of this sections header.

        Activity

          People

            apiravi Aruna Piravi (Inactive)
            apiravi Aruna Piravi (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Gerrit Reviews

                There are no open Gerrit changes

                PagerDuty