Uploaded image for project: 'Red Hat 3scale API Management'
  1. Red Hat 3scale API Management
  2. THREESCALE-8735

Client secret in clear text in the API Manager UI (RH SSO Integration)

    XMLWordPrintable

Details

    • Epic
    • Resolution: Unresolved
    • Major
    • None
    • 2.11.3 GA
    • System
    • Client secret masked by default
    • False
    • None
    • False
    • Not Started
    • Not Started
    • Not Started
    • Not Started
    • Not Started
    • Not Started
    • 0
    • 0% 0%

    Description

      Current behaviour
      On the RH SSO Integration screen in the Admin Portal, the client secret is displayed in the clear text.  This  causes an issue when there are more complex role and responsibility segregation. 

      Expected behaviour
      The client secret should be masked by default. Also when writing it to configure the integration it would be preferable to be able to hide it like a password.

      Attachments

        Activity

          People

            Unassigned Unassigned
            rhn-support-cvajjhal Chandrasekhar Vajjhala (Inactive)
            Votes:
            1 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated: