[SERVER-10855] Add a way to specify in createUser and updateUser commands whether the server should hash the password or the driver already has Created: 23/Sep/13 Updated: 02/Aug/18 Resolved: 23/Oct/13 |
|
| Status: | Closed |
| Project: | Core Server |
| Component/s: | Security |
| Affects Version/s: | None |
| Fix Version/s: | 2.5.4 |
| Type: | Task | Priority: | Major - P3 |
| Reporter: | Spencer Brody (Inactive) | Assignee: | Spencer Brody (Inactive) |
| Resolution: | Done | Votes: | 0 |
| Labels: | None | ||
| Remaining Estimate: | Not Specified | ||
| Time Spent: | Not Specified | ||
| Original Estimate: | Not Specified | ||
| Issue Links: |
|
||||||||||||||||||||||||
| Backwards Compatibility: | Minor Change | ||||||||||||||||||||||||
| Participants: | |||||||||||||||||||||||||
| Description |
|
For password policy enforcement the server needs to receive the password in plain text. Need to also figure out what the default should be, what the right interface to control this in the drivers is, etc. |
| Comments |
| Comment by auto [ 23/Oct/13 ] |
|
Author: {u'username': u'stbrody', u'name': u'Spencer T Brody', u'email': u'spencer@10gen.com'}Message: |