Uploaded image for project: 'CloudStack'
  1. CloudStack
  2. CLOUDSTACK-8342

LDAP Password is unsecure in the Global Settings Page

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Open
    • Major
    • Resolution: Unresolved
    • 4.2.0, 4.4.0, 4.5.0
    • None
    • Management Server
    • Security Level: Public (Anyone can view this level - this is the default.)
    • None

    Description

      The setting for ldap.bind.password is showing as plain text in the global settings page. This password should be stared out (e.g. ************) to keep the password encrypted since these passwords are usually secure and kept private.

      This should also stayed starred out when the edit is clicked on. The Admin can replace if necessary.

      Attachments

        Activity

          People

            Unassigned Unassigned
            mormullins Matt Mullins
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated: