Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-24798

Improve log messages for LDAP Authorization

    XMLWordPrintableJSON

Details

    • Icon: Improvement Improvement
    • Resolution: Done
    • Icon: Major - P3 Major - P3
    • 3.3.10
    • None
    • Security
    • None
    • Fully Compatible
    • Security 17 (07/15/16)

    Description

      A few improvements could be made to the log output from LDAP Authorization

      • Failure to map authentication names to LDAP DNs should output the full trace of every rule that was attempted.
      • LDAP name mapping rule failures should show the actual query that was executed and the failure reason
      • Forgetting ldap:// yields bad parameter to ldap_ routines. We should catch this up front.
      • We should try and minimize the number of reported errors when LDAP bind fails
      • Provide a better message for invalid scope types
      • Expected to find exactly one LDAP entity message should include the query

      Attachments

        Activity

          People

            spencer.jackson@mongodb.com Spencer Jackson
            spencer.jackson@mongodb.com Spencer Jackson
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: