Uploaded image for project: 'OpenShift Virtualization'
  1. OpenShift Virtualization
  2. CNV-34999

[2248455] Sensitive information might be collected in plain text to the central logging if it is written to the serial console

XMLWordPrintable

    • CNV I/U Operators Sprint 246, CNV I/U Operators Sprint 247
    • High
    • No

      Description of problem:
      Sensitive information might be collected in plain text to the central logging if it is written to the serial console.

      Version-Release number of selected component (if applicable):
      4.14

      How reproducible:
      100%

      Steps to Reproduce:
      1. Open a VM serial console
      2. Write a command that includes user and password
      3. Check the Logs in the OCP UI

      Actual results:
      The data is shown in plain text.

      Expected results:
      Sensitive data should not be collected or save in plain text.

      Additional info:

              stirabos Simone Tiraboschi
              sradco Shirly Radco
              Satheesaran Sundaramoorthi Satheesaran Sundaramoorthi
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved: