Merge pull request #11676 from keynslug/fix/EMQX-11026/secret-access-key-sensitive

fix(ftconf): also mark `secret_access_key` key as sensitive
This commit is contained in:
Andrew Mayorov 2023-09-25 17:52:25 +04:00 committed by GitHub
commit 349a6d906b
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
2 changed files with 5 additions and 0 deletions

View File

@ -632,6 +632,9 @@ is_sensitive_key(<<"proxy-authorization">>) -> true;
is_sensitive_key(secret) -> true; is_sensitive_key(secret) -> true;
is_sensitive_key("secret") -> true; is_sensitive_key("secret") -> true;
is_sensitive_key(<<"secret">>) -> true; is_sensitive_key(<<"secret">>) -> true;
is_sensitive_key(secret_access_key) -> true;
is_sensitive_key("secret_access_key") -> true;
is_sensitive_key(<<"secret_access_key">>) -> true;
is_sensitive_key(secret_key) -> true; is_sensitive_key(secret_key) -> true;
is_sensitive_key("secret_key") -> true; is_sensitive_key("secret_key") -> true;
is_sensitive_key(<<"secret_key">>) -> true; is_sensitive_key(<<"secret_key">>) -> true;
@ -779,6 +782,7 @@ redact_test_() ->
'proxy-authorization', 'proxy-authorization',
secret, secret,
secret_key, secret_key,
secret_access_key,
security_token, security_token,
token, token,
bind_password bind_password

View File

@ -0,0 +1 @@
Hide few pieces of sensitive information from debug-level logs.