From b04995f10fd3be8d522a2b65708fbefbecf10539 Mon Sep 17 00:00:00 2001 From: Alexey Masterov Date: Mon, 9 Sep 2024 16:44:33 +0200 Subject: [PATCH] Fix the security problem --- .github/workflows/cloud-regress.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/cloud-regress.yml b/.github/workflows/cloud-regress.yml index 74db440e8b..cfe62132ba 100644 --- a/.github/workflows/cloud-regress.yml +++ b/.github/workflows/cloud-regress.yml @@ -54,6 +54,7 @@ jobs: - name: Generate a random password id: pwgen run: | + set +x DBPASS=$(dd if=/dev/random bs=48 count=1 2>/dev/null | base64) echo DBPASS="${DBPASS//\//}" >> "${GITHUB_OUTPUT}" @@ -61,7 +62,9 @@ jobs: run: | cd /__w/neon/neon/vendor/postgres-v"${{ matrix.DEFAULT_PG_VERSION }}"/src/test/regress for fname in sql/*.sql expected/*.out; do + set +x sed -i.bak s/NEON_PASSWORD_PLACEHOLDER/"'${{ steps.pwgen.outputs.DBPASS }}'"/ "${fname}" + set -x done - name: Download Neon artifact