grails:
exceptionresolver:
params:
exclude:
- password
- creditCard
4.1.3.2 Masking Request Parameters From Stacktrace Logs
Version: 4.0.6
4.1.3.2 Masking Request Parameters From Stacktrace Logs
When Grails logs a stacktrace, the log message may include the names and values of all of the request parameters for the current request.
To mask out the values of secure request parameters, specify the parameter names in the grails.exceptionresolver.params.exclude
config property:
grails-app/conf/application.yml
Request parameter logging may be turned off altogether by setting the grails.exceptionresolver.logRequestParameters
config property to false. The default value is true when the application is running in DEVELOPMENT mode and false for all other
environments.
grails-app/conf/application.yml
grails:
exceptionresolver:
logRequestParameters: false