Uploaded image for project: 'Couchbase Server'
  1. Couchbase Server
  2. MB-5904

couchbase logs/diags/collectinfos should not contain user/password credentials

    XMLWordPrintable

Details

    • Improvement
    • Resolution: Fixed
    • Blocker
    • 2.2.0
    • 2.0, 2.2.0
    • ns_server
    • Security Level: Public
    • 12/Aug - 30/Aug

    Description

      customers attached logs to bugs, that is not safe for them and it's a bad practice

      example:

      "port_listen=11211,default_bucket_name=default,downstream_max=1024,downstream_conn_max=4,connect_max_errors=5,connect_retry_interval=30000,connect_timeout=400,auth_timeout=100,cycle=200,downstream_conn_queue_timeout=200,downstream_timeout=5000,wait_queue_timeout=200",
      "-z",
      "url=http://127.0.0.1:8091/pools/default/saslBucketsStreaming",
      "-p","0","-Y","y","-O","stderr",[]],
      [{env,
      [

      {"EVENT_NOSELECT","1"}

      ,

      {"MOXI_SASL_PLAIN_USR","Administrator"}

      ,

      {"MOXI_SASL_PLAIN_PWD","PASSWORD_HERE"}

      ]},
      use_stdio,exit_status,port_server_send_eol,
      stderr_to_stdout,stream]}},
      {mfargs,
      {supervisor_cushion,start_link,
      [moxi,5000,ns_port_server,start_link,
      [moxi,"/opt/couchbase/bin/moxi",
      ["-Z",

      I guess password in logs should be changed on ****.

      Attachments

        Issue Links

          No reviews matched the request. Check your Options in the drop-down menu of this sections header.

          Activity

            People

              andreibaranouski Andrei Baranouski
              andreibaranouski Andrei Baranouski
              Votes:
              1 Vote for this issue
              Watchers:
              9 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                PagerDuty