Announcement

Collapse
No announcement yet.

Potential Security Issue - Logs

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

    Potential Security Issue - Logs

    I was doing some house cleaning on my HS3 system and noticed that my roomba's BLID and password were in the clear in my logs. Could we get a sanitize option or sanitize the entries by default?

    Thanks for taking the time to create this plugin. It helps me a lot more in remembering to clean out the bin versus the mobile app.

    #2
    Which log did you see them in?
    Cheers,
    Bob
    Web site | Help Desk | Feature Requests | Message Board

    Comment


      #3
      The regular log:
      HSTouch Server Debug
      02:51:39:2979 ~ Value change ref:146 Address:BLRoombaWifi-(BLID Removed)-(Password Removed)-Ready/NotReady NewVal: 0OldVal: 8
      Looking at this it might be a result of using the two items in the address. Would there be any detriment to the plugin if the address was changed to something else? Maybe use the MAC and BLID or Hostname. I assume that the API requires both the BLID and password in order to do anything.

      Comment


        #4
        Ah ok - yes I use those because they are unique
        Let me look into it
        Cheers,
        Bob
        Web site | Help Desk | Feature Requests | Message Board

        Comment

        Working...
        X