Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Fixed issue #874 #883

Closed

Conversation

UtkarshShah0
Copy link
Contributor

What this PR does / why we need it:
In push_prometheus_alert function replaced http with https to make it more secure

Which issue this PR fixes:
fixes #874

Special notes for your reviewer:
SODACODE 2022 thanks

In push_prometheus_alert function replaced http with https to make it more secure
@codecov
Copy link

codecov bot commented Apr 24, 2022

Codecov Report

Merging #883 (a575655) into master (795934f) will decrease coverage by 0.02%.
The diff coverage is 0.00%.

@@            Coverage Diff             @@
##           master     #883      +/-   ##
==========================================
- Coverage   70.59%   70.57%   -0.03%     
==========================================
  Files         180      180              
  Lines       18825    18825              
  Branches     2769     2769              
==========================================
- Hits        13289    13285       -4     
- Misses       4694     4695       +1     
- Partials      842      845       +3     
Impacted Files Coverage Δ
delfin/exporter/prometheus/alert_manager.py 42.85% <0.00%> (ø)
delfin/drivers/fake_storage/__init__.py 93.63% <0.00%> (-1.02%) ⬇️

@@ -51,7 +51,7 @@ def push_prometheus_alert(self, alerts):

self.alerts.append(dict)
try:
response = requests.post('http://' + host + ":" + port +
response = requests.post('https://' + host + ":" + port +
Copy link
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Fix is not sufficient

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can you guide me how to solve this issue please.

Copy link
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This requires adding Authentication/Authorization support for the services (This issue is not part of SODACODE)

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thankyou, I got it.

@UtkarshShah0 UtkarshShah0 deleted the push_prometheus_alert branch April 25, 2022 15:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

In push_prometheus_alert function using http protocol can be insecure
2 participants