When the Linkerd proxy log level is set to debug or higher, the proxy logs HTTP headers which may contain sensitive information.
While we want to avoid logging sensitive data by default, logging of HTTP headers can be a helpful debugging tool. Therefore, we add a proxy.logHTTPHeaders Helm value which prevents the logging of HTTP headers when set to false. The default value of this value is false so that headers cannot be logged unless users opt-in.
Fixes #12620
When the Linkerd proxy log level is set to
debug
or higher, the proxy logs HTTP headers which may contain sensitive information.While we want to avoid logging sensitive data by default, logging of HTTP headers can be a helpful debugging tool. Therefore, we add a
proxy.logHTTPHeaders
Helm value which prevents the logging of HTTP headers when set to false. The default value of this value is false so that headers cannot be logged unless users opt-in.