You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This prints the configuration on the log console (in Kubernetes, I can read it with kubectl logs <karma pod>)
Security problem
In my configuration, I have secrets for authentication on alertmanagers.
My secrets are printed there.
Fix suggestions
Here are suggestions of how this problem could be fixed.
print the configuration only in debug mode
parse the configuration lines where secrets can be, and replace them with stars (example : ... level=info msg=" Authorization: Bearer *************************")
don't print the configuration al all
put the configuration in variables and print the variable contents instead of the plain configuration file
The text was updated successfully, but these errors were encountered:
Context
https://github.com/prymitive/karma/blob/main/internal/config/config.go#L424-L430
This prints the configuration on the log console (in Kubernetes, I can read it with
kubectl logs <karma pod>
)Security problem
In my configuration, I have secrets for authentication on alertmanagers.
My secrets are printed there.
Fix suggestions
Here are suggestions of how this problem could be fixed.
... level=info msg=" Authorization: Bearer *************************"
)The text was updated successfully, but these errors were encountered: