[Openstack-security] [Bug 1329301] Re: Update how tokens are redacted from plaintext exposure

OpenStack Infra 1329301 at bugs.launchpad.net
Thu Oct 9 15:01:11 UTC 2014


Reviewed:  https://review.openstack.org/123819
Committed: https://git.openstack.org/cgit/openstack/python-keystoneclient/commit/?id=23d20452d24dc3adeb404ab44799585ec1169247
Submitter: Jenkins
Branch:    master

commit 23d20452d24dc3adeb404ab44799585ec1169247
Author: Brant Knudson <bknudson at us.ibm.com>
Date:   Wed Sep 24 14:24:39 2014 -0500

    Log token with sha1
    
    By logging the sha1 hash of the token, it can be tracked through
    different services.
    
    Closes-bug: #1329301
    Change-Id: I9c338f6a418ab8dd34dbaaf918b0ea6e9cbe79d7


** Changed in: python-keystoneclient
       Status: In Progress => Fix Committed

-- 
You received this bug notification because you are a member of OpenStack
Security Group, which is subscribed to OpenStack.
https://bugs.launchpad.net/bugs/1329301

Title:
  Update how tokens are redacted from plaintext exposure

Status in Python client library for Glance:
  Fix Released
Status in Python client library for Keystone:
  Fix Committed

Bug description:
  We should move from this approach:

  https://review.openstack.org/#/c/83350/

  to whatever cross-project approach is agreed upon:

  See this thread:

  http://lists.openstack.org/pipermail/openstack-
  dev/2014-June/037345.html

To manage notifications about this bug go to:
https://bugs.launchpad.net/python-glanceclient/+bug/1329301/+subscriptions




More information about the Openstack-security mailing list