You are viewing a plain text version of this content. The canonical link for it is here.
Posted to common-issues@hadoop.apache.org by "Arpit Agarwal (JIRA)" <ji...@apache.org> on 2017/02/03 20:54:51 UTC

[jira] [Commented] (HADOOP-14055) SwiftRestClient includes pass length in exception if auth fails

    [ https://issues.apache.org/jira/browse/HADOOP-14055?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15852110#comment-15852110 ] 

Arpit Agarwal commented on HADOOP-14055:
----------------------------------------

+1. Thanks [~marcellhegedus].

[~steve_l] this change looks safe to me but I'll hold off committing until next week just in case you have any comments.

> SwiftRestClient includes pass length in exception if auth fails 
> ----------------------------------------------------------------
>
>                 Key: HADOOP-14055
>                 URL: https://issues.apache.org/jira/browse/HADOOP-14055
>             Project: Hadoop Common
>          Issue Type: Bug
>          Components: security
>            Reporter: Marcell Hegedus
>            Assignee: Marcell Hegedus
>            Priority: Minor
>         Attachments: HADOOP-14055.01.patch
>
>
> SwiftRestClient.exec(M method) throws SwiftAuthenticationFailedException if auth fails and its message will contain the pass length that may leak into logs.
> Fix is trivial.



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)

---------------------------------------------------------------------
To unsubscribe, e-mail: common-issues-unsubscribe@hadoop.apache.org
For additional commands, e-mail: common-issues-help@hadoop.apache.org