Add option to skip extensions signature verification in insecure mode

XMLWordPrintableJSON

    • Type: Task
    • Resolution: Unresolved
    • Priority: Major - P3
    • None
    • Affects Version/s: None
    • Component/s: None
    • None
    • Query Integration
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      At the point of this ticket, the gpg key insertion / removal logic (in secure & insecure mode), and the signature verification logic should all be laid down.

      If we are compiled in insecure mode (that is MONGO_CONFIG_EXT_SIG_SECURE is not defined) and the server flag '–extensionsSignaturePubKeyPath' is not present, skip all these operations (inserting the key, doing the verification, and removing the key).

            Assignee:
            Unassigned
            Reporter:
            Joe Shalabi
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: