Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-42874

redactClientLogData also redacts $comment field

    XMLWordPrintable

    Details

    • Type: Improvement
    • Status: Open
    • Priority: Major - P3
    • Resolution: Unresolved
    • Affects Version/s: None
    • Fix Version/s: Backlog
    • Component/s: None
    • Labels:
    • Case:

      Description

      By default, redactClientLogData also redacts $comment field. This is a field usually used for debugging from the application, for example to find which part of the application executed the query and some other metadata that could be useful.

      It would be helpful to add a parameter to redactClientLogData so it ignores the $comment field. With the current implementation, users cannot really use $comment on servers that need sensitive data protection.

        Attachments

          Activity

            People

            Assignee:
            backlog-server-security Backlog - Security Team
            Reporter:
            miguel.nieto Miguel Angel Nieto
            Participants:
            Votes:
            0 Vote for this issue
            Watchers:
            7 Start watching this issue

              Dates

              Created:
              Updated: