hammer doesn't prompt for password when using -u
|Found in release:||Pull request:|
|Velocity based estimate||-|
When specifying a username for hammer (overriding yml config file) hammer does not prompt for a password and instead errors with "invalid username or password" This causes bash history to contain sensitive information that should be secured.
When -u is specified or -p with no argument hammer should prompt for a password.
#5 Updated by Tomáš Strachota 10 months ago
- Category set to Hammer core
- Status changed from New to Closed
This issue has been fixed as part of https://github.com/theforeman/hammer-cli-foreman/commit/0de9a76f32087f03681d6a50ae8b42c8f3a729a2
Hammer now checks whether the username provided via -u is the same as the one stored in the config file and prompts for a password when they differ.