Uploaded image for project: 'Solr'
  1. Solr
  2. SOLR-11650

Credentials used for BasicAuth displayed in clear text on slave nodes

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Open
    • Critical
    • Resolution: Unresolved
    • 6.6.2
    • None
    • Authentication
    • None

    Description

      Pre-requisites:

      Have in place Solr configured in master slave replication with BasicAuth enabled.

      Issue:

      In UI on slave (under Replication tab of core) the master url is displayed with username and password used for BasicAuth in clear text.

      Example:
      master url:https://solr:SdjuDf3tM98@solr-master.local.com:8983/solr/mycore
      (see attached the screenshot)

      Suggestion/Idea:

      At least mask the password with *******

      Attachments

        1. Screen Shot 2017-11-16 at 10.48.38.png
          193 kB
          Constantin Bugneac
        2. SOLR-11650.patch
          2 kB
          Amrit Sarkar

        Activity

          People

            Unassigned Unassigned
            Constantin Bugneac Constantin Bugneac
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated: