summaryrefslogtreecommitdiff
path: root/keystoneclient/contrib
diff options
context:
space:
mode:
authorBrant Knudson <bknudson@us.ibm.com>2016-01-14 16:22:04 -0600
committerBrant Knudson <bknudson@us.ibm.com>2016-01-18 17:28:18 -0600
commit1da2c545c3c9099eedf81ebc8b95ab08b311a8c0 (patch)
tree5ec9c4284e7fa6ca7a0bdd4babce7aeedc5efab1 /keystoneclient/contrib
parentf15c176ba30efdcc15886e8f7203f32deb60c2a2 (diff)
downloadpython-keystoneclient-1.7.4.tar.gz
Mark password/secret options as secret1.7.4
Password, token, and secret options should be marked as secret=True so that when the value is logged the logger knows to obfuscate the value. Change-Id: I6ebdfa3bf6faf37bc11640a5826b3b55bb920fc4 Closes-Bug: 1534299 (cherry picked from commit 04f9f33b4b6079d39c3feea0b1ec1211a1de6a04)
Diffstat (limited to 'keystoneclient/contrib')
-rw-r--r--keystoneclient/contrib/auth/v3/oidc.py5
-rw-r--r--keystoneclient/contrib/auth/v3/saml2.py2
2 files changed, 4 insertions, 3 deletions
diff --git a/keystoneclient/contrib/auth/v3/oidc.py b/keystoneclient/contrib/auth/v3/oidc.py
index 0c94519..f9c5286 100644
--- a/keystoneclient/contrib/auth/v3/oidc.py
+++ b/keystoneclient/contrib/auth/v3/oidc.py
@@ -31,9 +31,10 @@ class OidcPassword(federated.FederatedBaseAuth):
options = super(OidcPassword, cls).get_options()
options.extend([
cfg.StrOpt('username', help='Username'),
- cfg.StrOpt('password', help='Password'),
+ cfg.StrOpt('password', secret=True, help='Password'),
cfg.StrOpt('client-id', help='OAuth 2.0 Client ID'),
- cfg.StrOpt('client-secret', help='OAuth 2.0 Client Secret'),
+ cfg.StrOpt('client-secret', secret=True,
+ help='OAuth 2.0 Client Secret'),
cfg.StrOpt('access-token-endpoint',
help='OpenID Connect Provider Token Endpoint'),
cfg.StrOpt('scope', default="profile",
diff --git a/keystoneclient/contrib/auth/v3/saml2.py b/keystoneclient/contrib/auth/v3/saml2.py
index 2e74996..bf8aea1 100644
--- a/keystoneclient/contrib/auth/v3/saml2.py
+++ b/keystoneclient/contrib/auth/v3/saml2.py
@@ -74,7 +74,7 @@ class _BaseSAMLPlugin(v3.AuthConstructor):
help="Identity Provider's URL"),
cfg.StrOpt('username', dest='username', help='Username',
deprecated_name='user-name'),
- cfg.StrOpt('password', help='Password')
+ cfg.StrOpt('password', secret=True, help='Password')
])
return options