Actions
action #170308
opencoordination #105624: [saga][epic] Reconsider how openQA handles secrets
coordination #162080: [epic] Hide SCC regcodes like secrets and passwords
Secret handling doesn't scrub values from logs and/or result files
Status:
New
Priority:
Normal
Assignee:
-
Category:
Regressions/Crashes
Target version:
QA (public, currently private due to #173521) - Tools - Next
Start date:
2024-11-26
Due date:
% Done:
0%
Estimated time:
Description
There's these two cases, where the secrets aren't scrubbed from the logs
- https://openqa.suse.de/tests/16016794#step/create_aistack_env/230
- https://openqa.suse.de/tests/16016794#step/create_aistack_env/227
Values corrresponding to _SECRET_SSH
and _SECRET_DOCKER
are both visible within the logs.
Actions