[SERVER-4092] mongod should not bind to 0.0.0.0 by default Created: 18/Oct/11 Updated: 18/Oct/11 Resolved: 18/Oct/11 |
|
| Status: | Closed |
| Project: | Core Server |
| Component/s: | None |
| Affects Version/s: | None |
| Fix Version/s: | None |
| Type: | Bug | Priority: | Major - P3 |
| Reporter: | Jonas H | Assignee: | Unassigned |
| Resolution: | Duplicate | Votes: | 0 |
| Labels: | None | ||
| Remaining Estimate: | Not Specified | ||
| Time Spent: | Not Specified | ||
| Original Estimate: | Not Specified | ||
| Operating System: | ALL |
| Participants: |
| Description |
|
By default, only local names should be bound (i.e. localhost/127.0.0.1) but not 0.0.0.0. Prevents stupid people (like me) from going with the default mongod configuration and having a serious security problem. |
| Comments |
| Comment by Eliot Horowitz (Inactive) [ 18/Oct/11 ] |
|
See |