You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
### Recommendations
- Add `no_log: true` to each play that uses sensitive data, otherwise that data can be printed to
the logs.
- Set the Ansible files to minimum permissions. Ansible uses the permissions of the user that runs
it.
We should review these recommendations to determine if there is a way to ensure no information is accidentally displayed in the logs by default (e.g. without specifying no_log: true) to improve the overall security and UX of the role.
The text was updated successfully, but these errors were encountered:
izgeri
changed the title
The conjur-role has been vetted for information displayed in logs
The log output of the conjur-role without "no_log" set to true has been reviewed
Dec 28, 2020
The following comment is in our
README.md
:We should review these recommendations to determine if there is a way to ensure no information is accidentally displayed in the logs by default (e.g. without specifying
no_log: true
) to improve the overall security and UX of the role.The text was updated successfully, but these errors were encountered: