mirror of
https://github.com/empayre/fleet.git
synced 2024-11-06 08:55:24 +00:00
40265d0e6f
#9609 This PR also fixes #10777. The issue is: We were using `svc.AppConfig` instead of `svc.ds.AppConfig` to retrieve the SMTP credentials. `svc.AppConfig` obfuscates credentials, whereas `svc.ds.AppConfig` does not. To help prevent this from happening again I've renamed `svc.AppConfig` to `svc.AppConfigObfuscated`. I've also added a new test SMTP server (https://github.com/axllent/mailpit) that supports Basic Authentication and tests that make use of it to catch these kind of bugs (the tests are executed when running `go test` with `MAIL_TEST=1`). - [X] Changes file added for user-visible changes in `changes/` or `orbit/changes/`. See [Changes files](https://fleetdm.com/docs/contributing/committing-changes#changes-files) for more information. - ~[ ] Documented any API changes (docs/Using-Fleet/REST-API.md or docs/Contributing/API-for-contributors.md)~ - ~[ ] Documented any permissions changes~ - ~[ ] Input data is properly validated, `SELECT *` is avoided, SQL injection is prevented (using placeholders for values in statements)~ - ~[ ] Added support on fleet's osquery simulator `cmd/osquery-perf` for new osquery data ingestion features.~ - [X] Added/updated tests - [X] Manual QA for all new/changed functionality - ~For Orbit and Fleet Desktop changes:~ - ~[ ] Manual QA must be performed in the three main OSs, macOS, Windows and Linux.~ - ~[ ] Auto-update manual QA, from released version of component to new version (see [tools/tuf/test](../tools/tuf/test/README.md)).~ |
||
---|---|---|
.. | ||
.keep | ||
8957-allow-prometheus-without-http-basic-auth | ||
9609-fix-smtp-email-send | ||
9834-vulnerability-publishe-date-column | ||
10038-consistent-empty-cell-coloring | ||
10257-remove-issuer-uri | ||
10328-clipped-icons | ||
10651-misaligned-icon | ||
10746-remove-mdm-feature-flags | ||
issue-9434-implement-api-for-disk-encryption-aggregate | ||
issue-10122-trigger-update-host-profiles-status | ||
issue-10408-document-mdm-settings | ||
issue-10778-webscokets-unsafe-origin |