-
Type:
Suggestion
-
Resolution: Done
-
Component/s: None
When git checkout tasks configured to use HTTPS run, the user and password are exposed in ps aux:
bamboo 15138 0.0 0.0 86752 2224 ? S May20 0:00 git-remote-https https://gituser:XXXXXXXX@stash.int.XXXX.com/scm/consumer/XXXX.git https://gituser:XXXXXXXX@stash.int.XXXX.com/scm/consumer/XXXX.git bamboo 15140 0.0 0.0 9852 468 ? S May20 0:00 git fetch-pack --stateless-rpc --lock-pack --include-tag --thin --no-progress --depth=1 https://gituser:XXXXXXXX@stash.int.XXXX.com/scm/consumer/XXXX.git
- is duplicated by
-
ID-6185 WebDAV Crowd mapping does not check for group with different beginning case
-
- Closed
-
-
BAM-15091 Use git-credential-store to avoid exposing plaintext username/password
- Closed
- is related to
-
BDEV-13523 Loading...