mirror of
https://github.com/github/codeql.git
synced 2025-12-19 18:33:16 +01:00
38 lines
1.8 KiB
Properties
38 lines
1.8 KiB
Properties
#***************************** LDAP Credentials *****************************************#
|
|
ldap.ldapHost = ldap.example.com
|
|
ldap.ldapPort = 636
|
|
ldap.loginDN = cn=Directory Manager
|
|
#### BAD: LDAP credentials are stored in cleartext ####
|
|
ldap.password = mysecpass
|
|
#### GOOD: LDAP credentials are stored in the encrypted format ####
|
|
ldap.password = eFRZ3Cqo5zDJWMYLiaEupw==
|
|
ldap.domain1 = example
|
|
ldap.domain2 = com
|
|
ldap.url= ldaps://ldap.example.com:636/dc=example,dc=com
|
|
|
|
#*************************** MS SQL Database Connection **********************************#
|
|
datasource1.driverClassName = com.microsoft.sqlserver.jdbc.SQLServerDriver
|
|
datasource1.url = jdbc:sqlserver://ms.example.com\\exampledb:1433;
|
|
datasource1.username = sa
|
|
#### BAD: Datasource credentials are stored in cleartext ####
|
|
datasource1.password = Passw0rd@123
|
|
#### GOOD: Datasource credentials are stored in the encrypted format ####
|
|
datasource1.password = VvOgflYS1EUzJdVNDoBcnA==
|
|
|
|
#*************************** Mail Connection **********************************#
|
|
mail.username = test@example.com
|
|
#### BAD: Mail credentials are stored in cleartext ####
|
|
mail.password = MysecPWxWa@1993
|
|
#### GOOD: Mail credentials are stored in the encrypted format ####
|
|
mail.password = M*********@1993
|
|
|
|
#*************************** AWS S3 Connection **********************************#
|
|
com.example.aws.s3.bucket_name=com-bucket-1
|
|
com.example.aws.s3.directory_name=com-directory-1
|
|
#### BAD: Access keys are stored in properties file in cleartext ####
|
|
com.example.aws.s3.access_key=AKMAMQPBYMCD6YSAYCBA
|
|
com.example.aws.s3.secret_key=8lMPSfWzZq+wcWtck5+QPLOJDZzE783pS09/IO3k
|
|
#### GOOD: Access keys are not stored in properties file ####
|
|
com.example.aws.s3.access_key=${ENV:AWS_ACCESS_KEY_ID}
|
|
com.example.aws.s3.secret_key=${ENV:AWS_SECRET_ACCESS_KEY}
|