cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Process Group Command line arguments

Pranav1
Participant

How can I turnoff these command line arguments ,since these contains some sensitive data and can all users are able to view this .

Is there a way to mask them or not pushing them into dynatrace itself ??

Thanks 

Pranav

3 REPLIES 3

AurelienGravier
DynaMight Champion
DynaMight Champion

Hello @Pranav1 ,

 

I think it's not possible but perhaps with IAM policies however I'm not sure that you will have the fine-grained schema :

https://www.dynatrace.com/support/help/shortlink/iam-getting-started

https://www.dynatrace.com/support/help/shortlink/iam-getting-started#example-2-allow-access-to-a-par...

Or, you could define management zones without visibility on process group, only with visibility on services and webapplications.

Regards

 

Observability consultant - Dynatrace Associate/Pro/Services certified

i am going to take the idea Aurelien advised that create a policy to allow access Service & WebApp, Host only and exclude Process level acess. But this doesn't solve our concern that command argument do contains sensitive info that is security concern. Command line argument masking didn't have process so far. 

 

https://community.dynatrace.com/t5/Product-ideas/Mask-any-query-parameter-or-command-line-argument-c...

Exposing tokens or other sensitive information as process command line arguments is generally a bad idea in the first place. Can't you just fix it in your application?

Certified Dynatrace Master | Alanata a.s., Slovakia, Dynatrace Master Partner

Featured Posts