Debug logs in E-Series reveals filer credentials

Bug #1383444 reported by Yogesh
8
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Cinder
Fix Released
High
Alex Meade
Icehouse
Fix Released
Undecided
Unassigned
Juno
Fix Released
Undecided
Unassigned

Bug Description

Here are the debug logs from c-bak service for ESeries -

2014-10-15 14:26:08.260 DEBUG cinder.volume.drivers.netapp.eseries.client [req-bce010b2-49ca-4251-9af9-92a350fc8102 None None] Invoking rest with method: POST, path: /storage-systems, data: {'password': '*****', 'controllerAddresses': ['XXX.XXX.XXX.XXX', 'XXX.XXX.XXX.XXX']}, use_system: False, timeout: None, verify: False, kwargs: {}. from (pid=14529) _invoke /opt/stack/cinder/cinder/volume/drivers/netapp/eseries/client.py:124

Mike Perez (thingee)
tags: added: drivers netapp
Revision history for this message
Robert Esker (esker) wrote :

Bug is in evidence back to Icehouse.

Mike Perez (thingee)
tags: added: icehouse-backport-potential juno-backport-potential
Changed in cinder:
status: New → Confirmed
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to cinder (master)

Fix proposed to branch: master
Review: https://review.openstack.org/143432

Changed in cinder:
assignee: nobody → Alex Meade (alex-meade)
status: Confirmed → In Progress
Jay Bryant (jsbryant)
Changed in cinder:
importance: Undecided → High
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to cinder (master)

Reviewed: https://review.openstack.org/143432
Committed: https://git.openstack.org/cgit/openstack/cinder/commit/?id=2a5a7a18280eec2125d212062ad6d97763356391
Submitter: Jenkins
Branch: master

commit 2a5a7a18280eec2125d212062ad6d97763356391
Author: Alex Meade <email address hidden>
Date: Sun Oct 19 14:31:55 2014 -0400

    NetApp E-series: Do not log passwords in requests

    Previously, requests to the backend that contained passwords were
    not scrubbed prior to logging.

    Closes-bug: 1383444

    Change-Id: I389d5115e4a6ffbae6f0463a62015f6ac01ec2e9

Changed in cinder:
status: In Progress → Fix Committed
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to cinder (stable/juno)

Fix proposed to branch: stable/juno
Review: https://review.openstack.org/143694

Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to cinder (stable/icehouse)

Fix proposed to branch: stable/icehouse
Review: https://review.openstack.org/143701

Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to cinder (stable/juno)

Reviewed: https://review.openstack.org/143694
Committed: https://git.openstack.org/cgit/openstack/cinder/commit/?id=81a308dfd6356e3a564cff389de939f7ca62edaf
Submitter: Jenkins
Branch: stable/juno

commit 81a308dfd6356e3a564cff389de939f7ca62edaf
Author: Rushil Chugh <email address hidden>
Date: Thu Oct 23 17:29:18 2014 -0400

    NetApp E-series: Do not log passwords in requests

    Previously, requests to the backend that contained passwords were
    not scrubbed prior to logging.

    Closes-bug: 1383444

    Change-Id: I389d5115e4a6ffbae6f0463a62015f6ac01ec2e9
    (cherry picked from commit: fdaf96621c011e1d0ee2666f8f547d47057f72d0)

tags: added: in-stable-juno
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to cinder (stable/icehouse)

Reviewed: https://review.openstack.org/143701
Committed: https://git.openstack.org/cgit/openstack/cinder/commit/?id=f8dea5a186535bc53f3fe8b3a18fc08e5efcb5f5
Submitter: Jenkins
Branch: stable/icehouse

commit f8dea5a186535bc53f3fe8b3a18fc08e5efcb5f5
Author: Rushil Chugh <email address hidden>
Date: Fri Oct 24 10:53:23 2014 -0400

    NetApp E-series: Do not log passwords in requests

    Previously, requests to the backend that contained passwords were
    not scrubbed prior to logging.

    Closes-bug: 1383444

    Change-Id: I389d5115e4a6ffbae6f0463a62015f6ac01ec2e9
    (cherry picked from commit: fdaf96621c011e1d0ee2666f8f547d47057f72d0)

tags: added: in-stable-icehouse
Thierry Carrez (ttx)
Changed in cinder:
milestone: none → kilo-2
status: Fix Committed → Fix Released
Thierry Carrez (ttx)
Changed in cinder:
milestone: kilo-2 → 2015.1.0
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.