[SERVER-11195] Mongo Shell Should Not Connect to Servers w/ Invalid or Expired SSL Certificates Created: 15/Oct/13  Updated: 19/Dec/13  Resolved: 12/Nov/13

Status: Closed
Project: Core Server
Component/s: Security, Shell
Affects Version/s: 2.5.3
Fix Version/s: 2.5.4

Type: Bug Priority: Major - P3
Reporter: Andy Schwerin Assignee: Andreas Nilsson
Resolution: Done Votes: 0
Labels: None
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Issue Links:
Depends
Operating System: ALL
Participants:

 Description   

By default, the mongo shell should do host and validity checking per as in SERVER-10330, and refuse to connect to mongodb servers whose certificates do not pass muster. The shell should also support an override option to disable this behavior.



 Comments   
Comment by Andreas Nilsson [ 12/Nov/13 ]

See note on SERVER-10330

Comment by auto [ 12/Nov/13 ]

Author:

{u'username': u'agralius', u'name': u'Andreas Nilsson', u'email': u'andreas.nilsson@10gen.com'}

Message: SERVER-10330 SERVER-11195 SSL server hostname validation
Branch: master
https://github.com/mongodb/mongo/commit/b5d36ec05cd4f22e02a8b4143954980946710648

Generated at Thu Feb 08 03:25:09 UTC 2024 using Jira 9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66.