In SERVER-23044, we added support for getting CA certificates from the system, so you can run mongo -ssl without -sslCAFile. On the shell side, if the server presents a certificate signed with a CA trusted by the operating system, the shell will connect without any errors - before it exited with an error that it couldn't validate the peer's certificate. There should be no real effect on the server side.
This has been backported to 3.2.6
- duplicates
-
DOCS-8262 Shell Support for System Certificates
- Closed
- related to
-
SERVER-23044 Fall back to system CA certs in the shell if CA file isn't provided
- Closed