#***************************** LDAP Credentials *****************************************# ldap.ldapHost = ldap.example.com ldap.ldapPort = 636 ldap.loginDN = cn=Directory Manager #### BAD: LDAP credentials are stored in cleartext #### ldap.password = mysecpass #### GOOD: LDAP credentials are stored in the encrypted format #### ldap.password = eFRZ3Cqo5zDJWMYLiaEupw== ldap.domain1 = example ldap.domain2 = com ldap.url= ldaps://ldap.example.com:636/dc=example,dc=com #*************************** MS SQL Database Connection **********************************# datasource1.driverClassName = com.microsoft.sqlserver.jdbc.SQLServerDriver datasource1.url = jdbc:sqlserver://ms.example.com\\exampledb:1433; datasource1.username = sa #### BAD: Datasource credentials are stored in cleartext #### datasource1.password = Passw0rd@123 #### GOOD: Datasource credentials are stored in the encrypted format #### datasource1.password = VvOgflYS1EUzJdVNDoBcnA== #*************************** Mail Connection **********************************# mail.username = test@example.com #### BAD: Mail credentials are stored in cleartext #### mail.password = MysecPWxWa@1993 #### GOOD: Mail credentials are stored in the encrypted format #### mail.password = M*********@1993 #*************************** AWS S3 Connection **********************************# com.example.aws.s3.bucket_name=com-bucket-1 com.example.aws.s3.directory_name=com-directory-1 #### BAD: Access keys are stored in properties file in cleartext #### com.example.aws.s3.access_key=AKMAMQPBYMCD6YSAYCBA com.example.aws.s3.secret_key=8lMPSfWzZq+wcWtck5+QPLOJDZzE783pS09/IO3k #### GOOD: Access keys are not stored in properties file #### com.example.aws.s3.access_key=${ENV:AWS_ACCESS_KEY_ID} com.example.aws.s3.secret_key=${ENV:AWS_SECRET_ACCESS_KEY}