Encryption of a secret macro values

XMLWordPrintable

    • Type: Change Request
    • Resolution: Unresolved
    • Priority: Minor
    • None
    • Affects Version/s: None
    • Component/s: None
    • None

      Zabbix stores secret macro values as plaintext in the database. This creates a "Data Exhaust" vulnerability where confidential information (such as API keys, user passwords, and SNMP strings) is exposed to anyone with read access to the database or its backups. To mitigate this risk, we recommend for future releases that Zabbix encrypt these values before they are written to disk.

            Assignee:
            Zabbix Development Team
            Reporter:
            Bartosz Nems
            Votes:
            1 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated: