Skip to content

Redact application_credential.secret from OpenStack API debug logs - #351

Open
neddp wants to merge 1 commit into
masterfrom
fix-application-credential-secret-leak
Open

Redact application_credential.secret from OpenStack API debug logs#351
neddp wants to merge 1 commit into
masterfrom
fix-application-credential-secret-leak

Conversation

@neddp

@neddp neddp commented Aug 31, 2026

Copy link
Copy Markdown
Member

ExconLoggingInstrumentor.redact did not scrub the application credential secret from Keystone auth request bodies, causing it to appear in BOSH task debug logs when application credential auth was in use.

ExconLoggingInstrumentor.redact did not scrub the application credential
secret from Keystone auth request bodies, causing it to appear in BOSH
task debug logs when application credential auth was in use.
@coderabbitai

coderabbitai Bot commented Aug 31, 2026

Copy link
Copy Markdown

Warning

Review limit reached

Next included review available in 59 minutes.

View limit details

Limit details: You’ve used the included review currently available.

You've used all free OSS reviews for now. Wait for the free limit to reset to keep reviewing this public repository.

Learn how review limits work.

Review configuration:

⚙️ Run configuration

Configuration used: Organization UI

Review profile: ASSERTIVE

Plan: Pro Plus

Run ID: d2da9cb6-cb1b-4d32-a3a3-efa4a5baa11d

📥 Commits

Reviewing files that changed from the base of the PR and between 2720659 and 588416c.

📒 Files selected for processing (2)
  • src/bosh_openstack_cpi/lib/cloud/openstack/excon_logging_instrumentor.rb
  • src/bosh_openstack_cpi/spec/unit/excon_logging_instrumentor_spec.rb

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

Status: Pending Merge | Prioritized

Development

Successfully merging this pull request may close these issues.

3 participants