[DOCS-3015] mms: exposed host check is now an alert Created: 26/Mar/14  Updated: 16/Mar/15  Resolved: 27/Mar/14

Status: Closed
Project: Documentation
Component/s: Cloud Manager
Affects Version/s: None
Fix Version/s: v1.3.3

Type: Task Priority: Major - P3
Reporter: Michael Benoit Assignee: Tim Slavin
Resolution: Done Votes: 0
Labels: None
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Participants:
Days since reply: 9 years, 46 weeks, 6 days ago

 Description   

There was once a group setting called "Exposed Db Host Check" which would periodically attempt to connect to your mongo servers to make sure they were not reachable via the public internet. This is now configured like any other alert called "Host is exposed to the public Internet." Any groups that had the old "Exposed Db Host Check" setting turned on had it automatically converted to an alert. Also, all newly created groups will get this alert from now on. When the alert is enabled, we will run the check twice a month, one the 1st and the 15th. Once we find an exposed host, we will continue to try to connect to it every 5 minutes until it is locked down and no longer accessible. Last, the email that we send out when an exposed host alert is triggered looks just like the other alert emails.

Note that this FAQ needs to be updated.



 Comments   
Comment by Michael Benoit [ 27/Mar/14 ]

It will look like all the other alerts emails, so there will be no special subject line. In fact, I think that entire FAQ should be replaced with something like this:

Q: I received an alert email stating that my host(s) are exposed to the public Internet. What does that mean?
(fill in with answer about how we check for exposed hosts)

Or, perhaps a better option. When we send out an alert of this type, we include a "More Info..." link in the body of the email which currently links to this FAQ. Maybe we adjust that link to take you to the manual page that explains this type of alert and eliminate the FAQ altogether. What do you think?

Comment by Tim Slavin [ 27/Mar/14 ]

Also, is the email subject line still "MMS Found Exposed Databases!!!" If
not, can you tell me what it has changed to so I can update the question
for the QA? Thanks.

Comment by Michael Benoit [ 27/Mar/14 ]

The former.

The alert is available to all groups, but any time a new group is created, they will automatically have a "Monitoring agent down" alert and a "Host exposed to the public Internet" alert configured for them. Existing groups that want to add this alert would have to configured it manually.

Comment by Tim Slavin [ 27/Mar/14 ]

Hey Mike,

Quick question:

You write, "Also, all newly created groups will get this alert from now on."

Do you mean all new groups will get this alert in an active state? Or
simply that the ability to create this alert is possible when new groups
are created, but people have to go out of their way to activate it?

Tim

Generated at Thu Feb 08 07:44:47 UTC 2024 using Jira 9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66.