[Openstack-security] [openstack/keystone] SecurityImpact review request change Icf8dd2f0b88abc89092d487bbcefb525960c4ec6

gerrit2 at review.openstack.org gerrit2 at review.openstack.org
Wed Jul 29 21:30:19 UTC 2015


Hi, I'd like you to take a look at this patch for potential
SecurityImpact.
https://review.openstack.org/207226

Log:
commit 021aa2785f7dd3a16f1b063242a6ad92bc85ab1f
Author: Brant Knudson <bknudson at us.ibm.com>
Date:   Wed Jul 29 16:29:42 2015 -0500

    Config option for insecure reponses
    
    oslo.log's "debug" option was coopted to also indicate that the
    responses should include more information. A separate config
    option should be used instead so that deployers don't mistakenly
    expose themselves to security issues.
    
    SecurityImpact
    
    Change-Id: Icf8dd2f0b88abc89092d487bbcefb525960c4ec6
    Closes-Bug: 1479523





More information about the Openstack-security mailing list