Open oberstet opened 6 years ago
Note that the sensitive information is of course also in the node configuration file (with Crossbar.io OSS), and access on the host needs to be controlled at the filesystem level.
The same could be said for log files .. but these are often further processed, collected at a central place, etc -- and hence we should apply more strict rules to log messages IMO.
We should remove any sensitive information from log messages, which includes eg secrets for static configuration of authentication methods that use secrets.
Consider this log message, printing information when a node starts that configures roles and WAMP-CRA authentication (static) (all sensitive info in this snippet has been manually redacted):
The WAMP-CRA secrets are printed in the log. This is bad.