Skip to content

Ability to specify health endpoint not-sensitive w/o disabling security #5750

Closed
@dwelch2344

Description

@dwelch2344

Currently, the only way to get the health endpoint to show the details of a downed service is to set endpoints.health.sensitive=false and management.security.enabled=false

The latter seems overly restrictive to me. We'd still like to keep the majority of our endpoints (env, trace, etc) secured, but it'd be nice to have health give more details.

Maybe having a third state like sensitive, insensitive, and detailed (for lack of a better word) where the health beans could determine how much detail to provide based on setting?

Open to any suggestions, just know I've run up to this many times and others have shared my thoughts. Also, happy to contribute to whatever is determined to be the best course :)

Metadata

Metadata

Assignees

No one assigned

    Labels

    status: declinedA suggestion or change that we don't feel we should currently apply

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions