mirror of
https://github.com/nikdoof/test-auth.git
synced 2025-12-16 19:33:44 +00:00
Strip sensitive key information from API Access Logs
This commit is contained in:
@@ -100,7 +100,9 @@ class CachedDocumentManager(models.Manager):
|
|||||||
except:
|
except:
|
||||||
pass
|
pass
|
||||||
else:
|
else:
|
||||||
ApiAccessLog(userid=v, service='Unknown', time_access=doc.time_retrieved, document=url).save()
|
for k in ['userid', 'apikey', 'vcode', 'keyid']:
|
||||||
|
if k in params: del params[k]
|
||||||
|
ApiAccessLog(userid=v, service='Unknown', time_access=doc.time_retrieved, document=self.construct_url(url_path, params)).save()
|
||||||
|
|
||||||
return doc
|
return doc
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user