[overlord-issues] [JBoss JIRA] (SRAMP-380) Passwords in clear text when running in Fuse 6.1

RH Bugzilla Integration (JIRA) issues at jboss.org
Tue Oct 7 12:03:22 EDT 2014


    [ https://issues.jboss.org/browse/SRAMP-380?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13009417#comment-13009417 ] 

RH Bugzilla Integration commented on SRAMP-380:
-----------------------------------------------

Brett Meyer <brmeyer at redhat.com> changed the Status of [bug 1146591|https://bugzilla.redhat.com/show_bug.cgi?id=1146591] from NEW to MODIFIED

> Passwords in clear text when running in Fuse 6.1
> ------------------------------------------------
>
>                 Key: SRAMP-380
>                 URL: https://issues.jboss.org/browse/SRAMP-380
>             Project: S-RAMP
>          Issue Type: Bug
>            Reporter: Eric Wittmann
>            Assignee: David virgil naranjo
>             Fix For: 0.6.0.Final
>
>
> When we install into JBoss EAP we make sure that we don't have any clear text passwords in any configuration files.  This is made possible by using the Vault, which allows us to store passwords in the vault and then refer to those vault locations from our config files.
> I don't know if there is something similar to be done in Fuse 6.1
> In addition, the login credentials for supported users in EAP are not stored in clear text (the EAP Application Realm config files store an encrypted version of the passwords).
> In Fuse 6.1 we are storing the login user credentials in a users.properties file in clear text.



--
This message was sent by Atlassian JIRA
(v6.3.1#6329)


More information about the overlord-issues mailing list