mirror of
https://github.com/ansible-collections/community.docker.git
synced 2025-12-16 03:52:05 +00:00
docker swarm - Add no_log to the signing_ca_key argument (#80)
* docker swarm - Add no_log to the signing_ca_key argument This will prevent accidental disclosure. See: CVE-2021-20191 * Update changelogs/fragments/CVE-2021-20191_no_log.yml Co-authored-by: Felix Fontein <felix@fontein.de>
This commit is contained in:
parent
fc2e14970b
commit
58babf738b
2
changelogs/fragments/CVE-2021-20191_no_log.yml
Normal file
2
changelogs/fragments/CVE-2021-20191_no_log.yml
Normal file
@ -0,0 +1,2 @@
|
|||||||
|
security_fixes:
|
||||||
|
- docker_swarm - enabled ``no_log`` for the option ``signing_ca_key`` to prevent accidental disclosure (CVE-2021-20191, https://github.com/ansible-collections/community.docker/pull/80).
|
||||||
@ -603,7 +603,7 @@ def main():
|
|||||||
name=dict(type='str'),
|
name=dict(type='str'),
|
||||||
labels=dict(type='dict'),
|
labels=dict(type='dict'),
|
||||||
signing_ca_cert=dict(type='str'),
|
signing_ca_cert=dict(type='str'),
|
||||||
signing_ca_key=dict(type='str'),
|
signing_ca_key=dict(type='str', no_log=True),
|
||||||
ca_force_rotate=dict(type='int'),
|
ca_force_rotate=dict(type='int'),
|
||||||
autolock_managers=dict(type='bool'),
|
autolock_managers=dict(type='bool'),
|
||||||
node_id=dict(type='str'),
|
node_id=dict(type='str'),
|
||||||
|
|||||||
Loading…
Reference in New Issue
Block a user