[Openstack-security] Secure Logging Recommendations

Paul Montgomery paul.montgomery at RACKSPACE.COM
Fri Jun 6 15:00:05 UTC 2014


I created a first pass document describing some potential solutions to OpenStack sensitive data logging leaks (such as credentials or auth tokens):

https://wiki.openstack.org/wiki/Security/Guidelines/logging_guidelines

I would appreciate reviews and discussions in order to gain approval of the OSSG and the security-minded community before making recommendations to other projects (especially in the "Possible Implementation Options" section).

Thanks!
---paulmo

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstack.org/pipermail/openstack-security/attachments/20140606/f77e007b/attachment.html>


More information about the Openstack-security mailing list