Uploaded image for project: 'Apache NiFi'
  1. Apache NiFi
  2. NIFI-3388 Provide encrypted repository implementations
  3. NIFI-3713

Examine logs to ensure that data is not leaked to logs when the corresponding repository is encrypted

    XMLWordPrintableJSON

Details

    Description

      I have noticed some of the logging statements (see LuceneEventIndex, etc.) print the flowfile attributes or provenance event record contents. I corrected some of these but the data can be useful for tracing and diagnostics if it is not sensitive. It is difficult to determine if the repository is encrypted without changing the method signatures and passing additional information. This will need an exhaustive audit to ensure no data leakage is occurring.

      Attachments

        Activity

          People

            exceptionfactory David Handermann
            alopresto Andy LoPresto
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: