[DOCS-3015] mms: exposed host check is now an alert Created: 26/Mar/14 Updated: 16/Mar/15 Resolved: 27/Mar/14 |
|
| Status: | Closed |
| Project: | Documentation |
| Component/s: | Cloud Manager |
| Affects Version/s: | None |
| Fix Version/s: | v1.3.3 |
| Type: | Task | Priority: | Major - P3 |
| Reporter: | Michael Benoit | Assignee: | Tim Slavin |
| Resolution: | Done | Votes: | 0 |
| Labels: | None | ||
| Remaining Estimate: | Not Specified | ||
| Time Spent: | Not Specified | ||
| Original Estimate: | Not Specified | ||
| Participants: | |
| Days since reply: | 9 years, 46 weeks, 6 days ago |
| Description |
|
There was once a group setting called "Exposed Db Host Check" which would periodically attempt to connect to your mongo servers to make sure they were not reachable via the public internet. This is now configured like any other alert called "Host is exposed to the public Internet." Any groups that had the old "Exposed Db Host Check" setting turned on had it automatically converted to an alert. Also, all newly created groups will get this alert from now on. When the alert is enabled, we will run the check twice a month, one the 1st and the 15th. Once we find an exposed host, we will continue to try to connect to it every 5 minutes until it is locked down and no longer accessible. Last, the email that we send out when an exposed host alert is triggered looks just like the other alert emails. Note that this FAQ needs to be updated. |
| Comments |
| Comment by Michael Benoit [ 27/Mar/14 ] |
|
It will look like all the other alerts emails, so there will be no special subject line. In fact, I think that entire FAQ should be replaced with something like this: Q: I received an alert email stating that my host(s) are exposed to the public Internet. What does that mean? Or, perhaps a better option. When we send out an alert of this type, we include a "More Info..." link in the body of the email which currently links to this FAQ. Maybe we adjust that link to take you to the manual page that explains this type of alert and eliminate the FAQ altogether. What do you think? |
| Comment by Tim Slavin [ 27/Mar/14 ] |
|
Also, is the email subject line still "MMS Found Exposed Databases!!!" If |
| Comment by Michael Benoit [ 27/Mar/14 ] |
|
The former. The alert is available to all groups, but any time a new group is created, they will automatically have a "Monitoring agent down" alert and a "Host exposed to the public Internet" alert configured for them. Existing groups that want to add this alert would have to configured it manually. |
| Comment by Tim Slavin [ 27/Mar/14 ] |
|
Hey Mike, Quick question: You write, "Also, all newly created groups will get this alert from now on." Do you mean all new groups will get this alert in an active state? Or Tim |