Project

General

Profile

Actions

action #158628

closed

coordination #105624: [saga][epic] Reconsider how openQA handles secrets

coordination #157537: [epic] Secure setup of openQA test machines with secure network+secure authentication

Prevent passwords being logged in s390x kvm test cases

Added by okurz 8 months ago. Updated 7 months ago.

Status:
Resolved
Priority:
Normal
Assignee:
Category:
Feature requests
Target version:
Start date:
2024-04-08
Due date:
% Done:

0%

Estimated time:

Description

Observation

Logs from jobs in https://openqa.suse.de/tests/latest?test=default&machine=s390x-kvm like
https://openqa.suse.de/tests/13913331/logfile?filename=autoinst-log.txt
show that the test password as well as hypervisor passwords are still often logged when they should be masked

Acceptance criteria

  • AC1: No mentions of our test or hypervisor passwords in autoinst-log.txt in the mentioned scenario (with exceptions)

Suggestions

Actions #1

Updated by okurz 8 months ago

  • Due date set to 2024-04-22

I found many hardcoded mentions of your passwords so I created #158631 . I don't think it's useful for myself trying to fix the complete test distribution os-autoinst-distri-opensuse.

https://github.com/os-autoinst/os-autoinst-distri-opensuse/pull/19046

Actions #3

Updated by okurz 7 months ago

  • Due date deleted (2024-04-22)
  • Status changed from Feedback to Resolved

It's better :) Actually multiple locations where the password is specified but I am ok with that :)

Actions

Also available in: Atom PDF