You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@hive.apache.org by "Laszlo Pinter (JIRA)" <ji...@apache.org> on 2018/10/24 13:46:00 UTC

[jira] [Created] (HIVE-20796) jdbc URL can contain sensitive information that should not be logged

Laszlo Pinter created HIVE-20796:
------------------------------------

             Summary: jdbc URL can contain sensitive information that should not be logged
                 Key: HIVE-20796
                 URL: https://issues.apache.org/jira/browse/HIVE-20796
             Project: Hive
          Issue Type: Improvement
          Components: Hive
    Affects Versions: 4.0.0
            Reporter: Laszlo Pinter
            Assignee: Laszlo Pinter


It is possible to put passwords in the jdbc connection url and some jdbc drivers will supposedly use that. (derby, mysql). This information is considered sensitive, and should be masked out, while logging the connection url.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)