Project

General

Profile

Actions

Bug #8891

closed

formSubmitLog: do not log passwords

Added by Carsten Rose over 4 years ago. Updated over 1 year ago.

Status:
Closed
Priority:
High
Assignee:
Carsten Rose
Target version:
Start date:
22.08.2019
Due date:
% Done:

0%

Estimated time:
Discuss:
Prio Planung:
No
Vote:

Description

  • Es waere gut wenn man eine List mit Feldern angebenen koennen, deren Values NICHT im FormSubmitLog gespeichert werden wuerden.
  • QuickFormQuery.php: logFormSubmitRequest()
  • Pro Form konfigurierbar: doNotLogColumn = <column>
  • Systemweiter Default: doNotLogColumn = 'password'
  • Es koennen mehrere Spalten, Komma separiert, angegeben werden.
  • Anstelle des Inhalts wird geschrieben: '*hide in log*'

Files

Actions #1

Updated by Carsten Rose over 4 years ago

  • Tracker changed from Support to Bug
Actions #2

Updated by Carsten Rose over 4 years ago

  • Status changed from New to Some day maybe
Actions #3

Updated by Carsten Rose over 4 years ago

  • Status changed from Some day maybe to New
Actions #4

Updated by Carsten Rose about 4 years ago

  • Assignee set to Carsten Rose
Actions #5

Updated by Carsten Rose about 4 years ago

  • Description updated (diff)
Actions #6

Updated by Carsten Rose about 4 years ago

  • Target version changed from 146 to next5
Actions #7

Updated by Carsten Rose about 4 years ago

  • Status changed from New to Priorize
Actions #8

Updated by Carsten Rose almost 2 years ago

  • Status changed from Priorize to New
  • Assignee changed from Carsten Rose to Enis Nuredini
  • Priority changed from Normal to High
  • Target version changed from next5 to 355
Actions #9

Updated by Carsten Rose over 1 year ago

  • Target version changed from 355 to 385
Actions #10

Updated by Carsten Rose over 1 year ago

  • Status changed from New to Priorize
Actions #11

Updated by Enis Nuredini over 1 year ago

  • Status changed from Priorize to ToDo
Actions #12

Updated by Enis Nuredini over 1 year ago

  • Status changed from ToDo to In Progress
Actions #13

Updated by Enis Nuredini over 1 year ago

  • Status changed from In Progress to Ready to sync (develop)
  • Assignee changed from Enis Nuredini to Carsten Rose
  • Prio Planung set to No
Im Bezug zum neuen Branch 'B8891_do_not_log_passwords' wartend aktuell als Merge Request:
  • Es waere gut wenn man eine List mit Feldern angebenen koennen, deren Values NICHT im FormSubmitLog gespeichert werden wuerden.
    Die Angabe von Feldern ist möglich und beziehen sich auf den Wert 'name' der Form Elemente.
  • QuickFormQuery.php: logFormSubmitRequest()
    Anpassung des Log-Inhalts erfolgt in genannter Funktion.
  • Pro Form konfigurierbar: doNotLogColumn = <column>
    Pro Form ist die Angabe der Felder über den Parameter doNotLogColumn möglich.
  • Systemweiter Default: doNotLogColumn = 'password'
    Systemweite Variable doNotLogColumn steht zur Verfügung und ist bei Default 'password'
  • Es können mehrere Spalten Komma separiert angegeben werden.
    Eingabe einer Komma separierten Liste ist möglich.
  • Anstelle des Inhalts wird geschrieben: '*hide in log*'
    Die Inhalte der eingegebenen Liste werden mit '*hide in log*' ersetzt.
Actions #14

Updated by Carsten Rose over 1 year ago

  • Target version changed from 385 to 24.10.0
Actions #15

Updated by Enis Nuredini over 1 year ago

  • Status changed from Ready to sync (develop) to Closed
Actions #16

Updated by Enis Nuredini over 1 year ago

  • Target version changed from 24.10.0 to 385
Actions #17

Updated by Carsten Rose over 1 year ago

  • File clipboard-202212111052-5agxs.png added

Eine gute Stelle um Werte aus dem System Store in Form[] zu uebernehmen ist QuickFormQuery->syncSystemFormConfig()

Actions #18

Updated by Carsten Rose over 1 year ago

  • File deleted (clipboard-202212111052-5agxs.png)
Actions #20

Updated by Carsten Rose over 1 year ago

  • Target version changed from 385 to 22.12.0
Actions

Also available in: Atom PDF