mirror of
https://github.com/netinvent/npbackup.git
synced 2024-09-20 06:46:13 +08:00
Add new security related entry
This commit is contained in:
parent
0370975718
commit
d7c201a6e2
|
@ -43,4 +43,9 @@ Best ways:
|
|||
# NPF-SEC-00008: Don't show manager password / sensible data with --show-config
|
||||
|
||||
Since v3.0.0, we have config inheritance. Showing the actual config helps diag issues, but we need to be careful not
|
||||
to show actual secrets.
|
||||
to show actual secrets.
|
||||
|
||||
# NPF-SEC-00009: Manager password in CLI mode
|
||||
|
||||
When using `--show-config --manager-password password`, we should only show unencrypted config if password is set.
|
||||
Also, when wrong password is entered, we should wait in order to reduce brute force attacks.
|
Loading…
Reference in a new issue