Skip to content
This repository has been archived by the owner on Dec 18, 2024. It is now read-only.

[SECURITY] configure via env vars #3

Open
jblachly opened this issue Aug 24, 2024 · 0 comments
Open

[SECURITY] configure via env vars #3

jblachly opened this issue Aug 24, 2024 · 0 comments

Comments

@jblachly
Copy link

Presently, chamberlaind is configured via command line params. Unfortunately, this means that any user irrespective of privilege level can see the entire command line, including RPC passwords for bitcoind and chamberlaind.

One way to mitigate this is to configure the application alternatively via environment variables. This has the additional benefit of fitting more nicely into typical configuration procedures for container orchestration systems such as k8s, nomad, and AWS ECS.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant