Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-8983

Add error code for authentication fails - especially important for auditing products

    XMLWordPrintable

    Details

    • Type: Improvement
    • Status: Closed
    • Priority: Major - P3
    • Resolution: Fixed
    • Affects Version/s: 2.4.0-rc2
    • Fix Version/s: 2.4.2, 2.5.0
    • Component/s: Security
    • Labels:
      None
    • Backwards Compatibility:
      Fully Compatible

      Description

      Currently when authentication fails (e.g. in db.auth() in the shell), the error that comes back does not have an error code, just a description. It is a common auditing policy by enterprises to log how many times someone tries to log-in and not having an error code for this makes it harder to identify. Especially as other DB products have error codes, it makes Mongo a special case.

      Providing error codes is a separate JIRA issue but specifically for this error would help in the short-term and make Mongo easier to integrate with.

        Attachments

          Issue Links

            Activity

              People

              • Votes:
                0 Vote for this issue
                Watchers:
                6 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: