[Openstack] API Security

Aaron Knister aaron.knister at gmail.com
Sat Apr 26 20:08:48 UTC 2014


Was it the client or the server that exposed the credentials?

Sent from my iPhone

> On Apr 26, 2014, at 2:28 PM, Hao Wang <hao.1.wang at gmail.com> wrote:
> 
> Hi,
> 
> I am troubleshooting a neutron case. It was just found that if DEBUG was enabled, neutron would print out JSON data with username and password. I am wondering what kind of protocol is used in production environment to prevent this security risk from happening.
> 
> Thanks,
> Hao
> _______________________________________________
> Mailing list: http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack
> Post to     : openstack at lists.openstack.org
> Unsubscribe : http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstack.org/pipermail/openstack/attachments/20140426/ee4a43cf/attachment.html>


More information about the Openstack mailing list