apache2buddy
apache2buddy copied to clipboard
[Please VOTE on this] Add redaction options eg --redact-hostname --redact-ip or redact by default and manually reveal
.
Working on this issue today. but thinking, should we default to a secure position as in redact hostnames and IP addresses by default and then have the user optionally reveal, one, either, or both elements?
For example:
The original proposal
-R REDACT both hostnames and IP addresses from output, for confident sharing on forums and social media.
--redact-hostname REDACT only the hostname element (implied with -R)
--redact-ip REDACT only the IP element (implied with -R)
But now I find myself contemplating this:
-R REVEAL both hostnames and IP addresses from output, (default redacts for confident sharing on forums and social media.)
--reveal-hostname REVEAL only the hostname element (implied with -R)
--reveal-ip REVEAL only the IP element (implied with -R)
So the choices are:
- Automatically redact as a safe default - have the user manually reveal (this seems like a logical security stance to take)
- Stay as we are, and have the user manually redact
Lets do a vote, for anyone that reads my ramblings:
Rocket 🚀 for redact by default and manually reveal Eyes 👀 for stay as we are and manually redact
I'll cast the first vote (I'm thinking it makes sense to redact by default and have the user choose to reveal, so I vote Rocket), I'll leave this for a week or so and come back and look at the final tally, if its just me and just my Rocket vote, I'll redact by default and have the user manually reveal if they wish.
Posted this issue on LinkedIn for greater reach and prospective votes
No-one voted, so Im going to close this issue