Uploaded image for project: 'Puppet'
  1. Puppet
  2. PUP-6441

Redact events with sensitive data

    XMLWordPrintable

Details

    • Improvement
    • Status: Closed
    • Normal
    • Resolution: Fixed
    • None
    • PUP 4.6.0
    • None
    • Not Needed
    • Hide
      See PUP-6440. We'll release note the whole feature not the individual tix.
      Show
      See PUP-6440 . We'll release note the whole feature not the individual tix.

    Description

      When Puppet synchronizes a property it stores the historical, previous, and desired values in an instance of Puppet::Transaction::Event. The event is both sent to the Puppet master in the transaction report and is logged as part of the normal Puppet logging. When an event is created that contains sensitive data, these fields need to be redacted in some manner to prevent the plaintext values from being emitted in the aforementioned logging and reports.

      Event objects also contain a message field that may contain sensitive information, but as far as the event is concerned this is an opaque string and thus cannot be redacted by the event itself.

      Attachments

        Issue Links

          Activity

            People

              qa qa
              adrien Adrien Thebo
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                Zendesk Support