+
Skip to content

ansible-config dump should not print auth token in full #85373

@myllynen

Description

@myllynen

Summary

It would probably be better if ansible-config dump --only-changed etc would not print out the authentication token in full or at all, as it can be used to access restricted collection repos it would not be nice to accidentally leak it out when providing the output upon request or during a screenshare session or part of scripting. Seeing the some initial and trailing chars could be helpful to determine that the correct token is indeed in use but might be better to avoid printing out the full token.

Issue Type

Bug Report

Component Name

ansible-config

Ansible Version

Any

Configuration

Any

OS / Environment

Any

Steps to Reproduce

ansible-config dump --only-changed

Expected Results

No full authentication is displayed for everyone to see.

Actual Results

Full authentication token is displayed.

Code of Conduct

  • I agree to follow the Ansible Code of Conduct

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugThis issue/PR relates to a bug.has_prThis issue has an associated PR.

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions

      点击 这是indexloc提供的php浏览器服务,不要输入任何密码和下载