below is my task to run terraform code and vinyl entry for newly created VM on the vsphere Vcenter i have pass my credentials in ansible vault “secrets.yaml” my question is that when i run the playbook in the log i my credentials are visible when i use no_log = true i cant see the log if any error anyone can help me on that how to handle.
Sadly with shell it is an “all or nothing” chioce. If there were a specific vinyl action that could flag the specific fields as no_log.
Also, in general, passing secrets in the command line is not very secure, as any user on that system that can inspect the process list and arguments can see it.
Environment variables are slightly better, but I don’t know enough about vinyl to give you alternatives.