mirror of
https://github.com/kubernetes-sigs/external-dns.git
synced 2025-08-06 01:26:59 +02:00
Merge pull request #4706 from iul1an/hide-AWSAssumeRoleExternalID
Do not expose the AWS role external id in the logs
This commit is contained in:
commit
b024fc9237
@ -86,7 +86,7 @@ type Config struct {
|
||||
AWSZoneTagFilter []string
|
||||
AWSAssumeRole string
|
||||
AWSProfiles []string
|
||||
AWSAssumeRoleExternalID string
|
||||
AWSAssumeRoleExternalID string `secure:"yes"`
|
||||
AWSBatchChangeSize int
|
||||
AWSBatchChangeSizeBytes int
|
||||
AWSBatchChangeSizeValues int
|
||||
|
@ -102,7 +102,8 @@ func newV2Config(awsConfig AWSSessionConfig) (awsv2.Config, error) {
|
||||
stsSvc := sts.NewFromConfig(cfg)
|
||||
var assumeRoleOpts []func(*stscredsv2.AssumeRoleOptions)
|
||||
if awsConfig.AssumeRoleExternalID != "" {
|
||||
logrus.Infof("Assuming role: %s with external id %s", awsConfig.AssumeRole, awsConfig.AssumeRoleExternalID)
|
||||
logrus.Infof("Assuming role %s with external id", awsConfig.AssumeRole)
|
||||
logrus.Debugf("External id: %s", awsConfig.AssumeRoleExternalID)
|
||||
assumeRoleOpts = []func(*stscredsv2.AssumeRoleOptions){
|
||||
func(opts *stscredsv2.AssumeRoleOptions) {
|
||||
opts.ExternalID = &awsConfig.AssumeRoleExternalID
|
||||
|
Loading…
Reference in New Issue
Block a user