diff options
author | Daniil Baturin <daniil@vyos.io> | 2023-11-07 16:17:16 +0000 |
---|---|---|
committer | GitHub <noreply@github.com> | 2023-11-07 16:17:16 +0000 |
commit | 5defe01200a990c3efb2b6582b6b844a24ce5c5a (patch) | |
tree | cc10a5e59c44fe54fea2240f35684c11907483f8 | |
parent | c7f4a5ac86ef368af7b9da54a85fdd88c0e1b176 (diff) | |
parent | 863af115df853987dd8ad25ecef3f0ea58485e83 (diff) | |
download | vyos-1x-5defe01200a990c3efb2b6582b6b844a24ce5c5a.tar.gz vyos-1x-5defe01200a990c3efb2b6582b6b844a24ce5c5a.zip |
Merge pull request #2437 from sempervictus/bug/strip_secrets_misses_secret
T5713: Strip string after "secret" in IPSEC configs
-rwxr-xr-x | src/helpers/strip-private.py | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/src/helpers/strip-private.py b/src/helpers/strip-private.py index eb584edaf..cb29069cf 100755 --- a/src/helpers/strip-private.py +++ b/src/helpers/strip-private.py @@ -1,6 +1,6 @@ #!/usr/bin/python3 -# Copyright 2021-2022 VyOS maintainers and contributors <maintainers@vyos.io> +# Copyright 2021-2023 VyOS maintainers and contributors <maintainers@vyos.io> # # This library is free software; you can redistribute it and/or # modify it under the terms of the GNU Lesser General Public @@ -21,7 +21,6 @@ import sys from netaddr import IPNetwork, AddrFormatError - parser = argparse.ArgumentParser(description='strip off private information from VyOS config') strictness = parser.add_mutually_exclusive_group() @@ -119,6 +118,7 @@ if __name__ == "__main__": (True, re.compile(r'(shared-secret-key-file|ca-cert-file|cert-file|dh-file|key-file|client) (\S+)'), r'\1 xxxxxx'), # Strip IPSEC secrets (True, re.compile(r'pre-shared-secret \S+'), 'pre-shared-secret xxxxxx'), + (True, re.compile(r'secret \S+'), 'secret xxxxxx'), # Strip OSPF md5-key (True, re.compile(r'md5-key \S+'), 'md5-key xxxxxx'), # Strip WireGuard private-key |