azure-loadbalancer-rewrite-header-values
Request or response rewrite rules may hard-code authorization headers, tokens, or sensitive values.
Where it sits
| location | Microsoft.Network/applicationGateways.properties.rewriteRuleSets[].properties.rewriteRules[].actionSet.*.headerValue |
| location kind | config_field |
| data kinds | credential password api_key access_key secret_key oauth_token connection_string |
| emits edge | ContainsSecret |
| service | Load Balancer / App Gateway (azure:loadbalancer) |
Collection recipe
| access mode | read_api |
| operation | Application Gateways - Get |
| response path | properties.rewriteRuleSets[].properties.rewriteRules[].actionSet |
| encoding | json |
| params | {"resource_id": "\u003cazure-resource-id\u003e"} |
Required permissions
Microsoft.Network/applicationGateways/read
References