Hide encrypted config elements from error/trace output #213
Labels
No labels
bug
confirmed
critical
discussion
documentation
Doing
enhancement
experiment
suggestion
support
Testing
To Do
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference: hazaar/framework#213
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
For debugging, when we output an error we also display the current configuration for convenience. This is a potential security issue if the developer/ops manager does not disable debugging in a production environment. We could just say "tough, just turn it off", which is kinda what I have been doing, but I had the idea to internally flag configuration elements loaded from an encrypted include file and just not output those elements, just in case debugging is left on.
mentioned in merge request !122
created merge request !122 to address this issue
mentioned in commit 41f38de90489e31d365026e1bfaf35635b8dfdfc