Uploaded image for project: 'Qpid'
  1. Qpid
  2. QPID-918

Authentication password is logged when "trace" is enabled

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • M3
    • 0.6
    • C++ Broker
    • None

    Description

      If trace is enabled on the broker, the "response" field of a "Start-Ok" method is logged. This field contains the authentication password in clear text.

      Attachments

        1. qpid_918_structs_rb.patch.txt
          1 kB
          Senaka Fernando

        Activity

          People

            Unassigned Unassigned
            tross Ted Ross
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: