tcheymol / generator-loopback-ansible

Generates a loopback ansible application
MIT License
14 stars 5 forks source link

[Security] Database credentials must be Vaulted #12

Open Remy-Luciani opened 7 years ago

Remy-Luciani commented 7 years ago

@tcheymol Passwords appear unencrypted in both Ansible vars and database.json db-migrate config file.

What I suggest:

Then the dev who generated the Vault password manages its sharing according to organization policy/team practices (LastPass, KeePass...).

Remy-Luciani commented 7 years ago

cc @cRicateau ;-]