[ 
https://issues.apache.org/jira/browse/WHIRR-499?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13198822#comment-13198822
 ] 

Andrei Savu commented on WHIRR-499:
-----------------------------------

Also when starting a Hadoop cluster the Amazon keys are part of the log file. 
Does it really make sense to make an effort to clean that? Or is it enough if 
we display an warning saying that the log file is security sensitive? 
                
> Avoid logging private key in logs
> ---------------------------------
>
>                 Key: WHIRR-499
>                 URL: https://issues.apache.org/jira/browse/WHIRR-499
>             Project: Whirr
>          Issue Type: Improvement
>    Affects Versions: 0.7.0
>         Environment: All
>            Reporter: Ashish Paliwal
>            Priority: Minor
>
> whirr.log file has private key logged for the User created. This could 
> potential security threat, if logs are shared for debugging purposes.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators: 
https://issues.apache.org/jira/secure/ContactAdministrators!default.jspa
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

Reply via email to