Details
-
New Feature
-
Status: Closed
-
Minor
-
Resolution: Done
-
None
-
None
Description
Guacamole currently provides multiple storage mechanisms for connection data, but generally relies on the security of the server(s) hosting those mechanisms to guard sensitive data. The same goes for the contents of guacamole.properties. With the widespread availability of vault services providing secure storage and retrieval of sensitive data, it would be useful if Guacamole could dynamically retrieve sensitive data from these vaults, including:
- Sensitive connection data that may otherwise be stored directly in a database.
- Sensitive configuration information that may otherwise need to be stored directly in guacamole.properties.
Attachments
Issue Links
- is duplicated by
-
GUACAMOLE-1244 Provide secure way to add MySQL password in guacamole configuration file
-
- Closed
-
-
GUACAMOLE-1162 security in guacamole_user_attribute
-
- Closed
-
- is related to
-
GUACAMOLE-581 Implement Credential Profiles
-
- Open
-
-
GUACAMOLE-558 Password encryption
-
- Open
-
- relates to
-
GUACAMOLE-524 Allow LDAP attributes to be used as token
-
- Resolved
-