Uploaded image for project: 'Hadoop HDFS'
  1. Hadoop HDFS
  2. HDFS-15805

Hadoop prints sensitive Cookie information.

VotersWatch issueWatchersCreate sub-taskLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Duplicate
    • 3.1.1
    • None
    • None
    • None

    Description

      org.apache.hadoop.security.authentication.client.AuthenticatedURL.AuthCookieHandler#setAuthCookie - prints cookie information in log. Any sensitive infomation in Cookies will be logged, which needs to be avaided.

      LOG.trace("Setting token value to {} ({})", authCookie, oldCookie);

      Attachments

        1. HDFS-15805.001.patch
          0.9 kB
          Renukaprasad C

        Issue Links

        Activity

          This comment will be Viewable by All Users Viewable by All Users
          Cancel

          People

            prasad-acit Renukaprasad C
            prasad-acit Renukaprasad C
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Slack

                Issue deployment