Last Modified: Sep 13, 2023
Affected Product(s):
BIG-IP TMOS
Fixed In:
11.6.0, 11.5.4 HF3
Opened: Jun 18, 2014 Severity: 2-Critical
With audit logging enabled, you notice that after updating a password for an account it is visible in /var/log/audit
Password is visible in the audit log.
This occurs when audit logging is enabled.
Disable audit logging.
The password is no longer logged in the audit log.