Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-45387

mongod will start with allowConnectionWithoutCertificates: true and authenticationMechanism: MONGODB-X509

    XMLWordPrintableJSON

Details

    • Icon: Improvement Improvement
    • Resolution: Won't Do
    • Icon: Major - P3 Major - P3
    • None
    • None
    • None
    • None
    • Security 2019-01-27

    Description

      The mongod process will start with the following unreasonable setting, possible security glitch:

      ssl:
        ...
          allowConnectionWithoutCertificates: true
      setParameter:
         authenticationMechanism: MONGODB-X509
      

      Attachments

        Activity

          People

            spencer.jackson@mongodb.com Spencer Jackson
            ella.shurhavetsky@mongodb.com Ella Shurhavetsky
            Votes:
            0 Vote for this issue
            Watchers:
            8 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: