azure-loadbalancer-rewrite-header-values

Request or response rewrite rules may hard-code authorization headers, tokens, or sensitive values.

azurecritical service: azure:loadbalancer emits ContainsSecret

Where it sits

locationMicrosoft.Network/applicationGateways.properties.rewriteRuleSets[].properties.rewriteRules[].actionSet.*.headerValue
location kindconfig_field
data kindscredential password api_key access_key secret_key oauth_token connection_string
emits edgeContainsSecret
serviceLoad Balancer / App Gateway (azure:loadbalancer)

Collection recipe

access moderead_api
operationApplication Gateways - Get
response pathproperties.rewriteRuleSets[].properties.rewriteRules[].actionSet
encodingjson
params{"resource_id": "\u003cazure-resource-id\u003e"}

Required permissions

Microsoft.Network/applicationGateways/read

References

move · open · esc close