# FR - export the placeholders for user/password

**URL:** <https://discourse.nodered.org/t/fr-export-the-placeholders-for-user-password/59367>\
**Category:** Feature Requests\
**Created:** [4 March 2022 14:11 UTC](https://discourse.nodered.org/t/fr-export-the-placeholders-for-user-password/59367 "2022-03-04T14:11:50Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![SandeepA](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/sandeepa/32/63225_2.png) [@SandeepA](https://discourse.nodered.org/u/SandeepA)\
**Post date:** [4 March 2022 14:11 UTC](https://discourse.nodered.org/t/fr-export-the-placeholders-for-user-password/59367/1 "2022-03-04T14:11:50Z")

</div>

Hi ,

Background :- We have multiple environments and we are developing flows and once the development finishes - we send them for QA. We are using ENV variables to set the config of MSSQL node - so that the DB connection can be defined per environment without having to touch the flow itself.

While deploying to each environment , while the process of deployment is automated - what we are finding is - every time someone needs to manually insert the user/password to the mssql contrib config node. This is even if the person needs to type in {{{user}}} and {{{pass}}} - variables defined in environment.

This then creates a situation

1. The process is not automated. A manual intervention is required before the flow becomes usable.
2. A person who knows the flow is needed. (Deployment folks do not know the details of the flows).
3. If now the person makes an error then a new issue arises.... making the process error prone.

We would like - if the existing node - can be enhanced - where in if the user/pass is defined to take it from env - then during export these placeholders be maintained.

So if user was defined as {{{ENV\_USER}}} and password as {{{ENV\_PASS}}} - the export of that flow should contain {{{ ENV\_USER}}} and {{{ENV\_PASS}}}.

We do not want to export the actual credential/value of those variables as that would be a security breach and also against NR principles thereby defeating the concept of credential file.

Please suggest if this can be considered. Thanks.

---

<div class="post-metadata">

**Author:** ![Steve-Mcl](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/steve-mcl/32/4826_2.png) [@Steve-Mcl](https://discourse.nodered.org/u/Steve-Mcl)\
**Post date:** [4 March 2022 14:36 UTC](https://discourse.nodered.org/t/fr-export-the-placeholders-for-user-password/59367/2 "2022-03-04T14:36:07Z")

</div>

@SandeepA this is not a node specific thing - it is built into the core of node-red. Any node (built in or contrib) that has a field marked as a credential is currently NOT exported (for security reasons).

---

<div class="post-metadata">

**Author:** ![dceejay](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/dceejay/32/38_2.png) [@dceejay](https://discourse.nodered.org/u/dceejay)\
**Post date:** [4 March 2022 15:08 UTC](https://discourse.nodered.org/t/fr-export-the-placeholders-for-user-password/59367/3 "2022-03-04T15:08:48Z")

</div>

As far as I'm aware nodes do not accept {{{password}}} mustache style... maybe you mean ${password} environment variable style ? Or are you proposing a new style ?

---

<div class="post-metadata">

**Author:** ![Steve-Mcl](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/steve-mcl/32/4826_2.png) [@Steve-Mcl](https://discourse.nodered.org/u/Steve-Mcl)\
**Post date:** [4 March 2022 16:03 UTC](https://discourse.nodered.org/t/fr-export-the-placeholders-for-user-password/59367/4 "2022-03-04T16:03:54Z")

</div>

The MSSQL-PLUS node has special powers permitting things like `server-{{servernumber}}`

but it still adheres to the credentials methods (so still wont be exported)

---

<div class="post-metadata">

**Author:** ![SandeepA](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/sandeepa/32/63225_2.png) [@SandeepA](https://discourse.nodered.org/u/SandeepA)\
**Post date:** [4 March 2022 19:01 UTC](https://discourse.nodered.org/t/fr-export-the-placeholders-for-user-password/59367/5 "2022-03-04T19:01:14Z")

</div>

Thanks Steve & @dceejay . I will try the suggestion by Nick on the original thread. That may help my case.  
Original Thread -  
[MSSQL Plus Node - encrypt password when its an env variable - security pov?](https://discourse.nodered.org/t/mssql-plus-node-encrypt-password-when-its-an-env-variable-security-pov/58303)

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex026/uploads/nodered/original/1X/d073cd938eafa2e558d7c2cd59003b3ef4963033.png) [@system](https://discourse.nodered.org/u/system)\
**Post date:** [3 May 2022 19:02 UTC](https://discourse.nodered.org/t/fr-export-the-placeholders-for-user-password/59367/6 "2022-05-03T19:02:04Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
