Description of problem: We notice some sensitive information leak in ansible.log due to ceph-ansible (mainly ceph admin key). Version-Release number of selected component (if applicable): ceph-ansible-4.0.41 How reproducible: include no_log=true in the ansible playbooks, yet ceph admin key is recorded in the ansible.log. Actual results: ansible.log contains sensitive data Expected results: ceph admin key should not be logged in ansible log Additional info: Looking for adding RP#6538 into ceph-ansible to address this. https://github.com/ceph/ceph-ansible/pull/6538
Verified using ceph-ansible-4.0.62.2-1.el8cp.noarch ceph-base-14.2.11-184.el8cp.x86_64
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Red Hat Ceph Storage 4.2 Bug Fix update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2021:3670