How to overcome JBoss vault issues including decrypting sensitive passwords?
Issue
- Obscuring passwords without intruder from obtaining credentials.
- There is code on the internet to decrypt the Vault Password as well as change the keystore password.
- Masking passwords in system properties still allows them to be readable with
jinfoor in the log
Environment
- Red Hat JBoss Enterprise Application Platform (EAP)
- 6
- 7
- Password protected by Vault
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.