Uploaded image for project: 'Flink'
  1. Flink
  2. FLINK-30306

Audit utils can expose potentially sensitive information

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Open
    • Major
    • Resolution: Unresolved
    • kubernetes-operator-1.2.0
    • None
    • Kubernetes Operator
    • None

    Description

      I see events being logged by org.apache.flink.kubernetes.operator.listener.AuditUtils along the lines of ">>> Event | Info | SPECCHANGED | UPGRADE change(s) detected". This logs the entire new spec, which can contain sensitive information that has been injected from a Kubernetes secret.

      Attachments

        Activity

          People

            Unassigned Unassigned
            asardaes Alexis Sarda-Espinosa
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated: