Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-12383

Add upper bound for the userCacheInvalidationInterval

    • Type: Icon: Improvement Improvement
    • Resolution: Done
    • Priority: Icon: Major - P3 Major - P3
    • 2.5.5
    • Affects Version/s: 2.5.4
    • Component/s: Security
    • Labels:
    • Fully Compatible

      Implement an upper bound on the parameter userCacheInvalidationInterval to prevent a malicious user to disable privilege change propagation.

      Suggested maximum time 24 hours.

            Assignee:
            andreas.nilsson Andreas Nilsson
            Reporter:
            andreas.nilsson Andreas Nilsson
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: