[SERVER-52645] Allow userToDNMapper to accept (and use by default) an empty set of transforms Created: 05/Nov/20  Updated: 29/Oct/23  Resolved: 22/Jan/21

Status: Closed
Project: Core Server
Component/s: None
Affects Version/s: None
Fix Version/s: 4.9.0

Type: Improvement Priority: Major - P3
Reporter: Sara Golemon Assignee: Sergey Galtsev (Inactive)
Resolution: Fixed Votes: 0
Labels: neweng
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Issue Links:
Depends
Documented
is documented by DOCS-14151 Investigate changes in SERVER-52645: ... Closed
Backwards Compatibility: Minor Change
Sprint: Security 2021-01-25
Participants:

 Description   

Currently the userToDNMapper class requires at least one transform rule to function correctly.

Treat empty string (or `[]` / array) as performing no transformations without error.



 Comments   
Comment by Sergey Galtsev (Inactive) [ 22/Jan/21 ]

NOTE: The commit that implements the change is incorrectly annotated to be "master: SERVER-53837: Fix race of OplogFetcher access in TenantMigrationRecipientServiceTest.OplogApplierFails"

Comment by Githook User [ 20/Jan/21 ]

Author:

{'name': 'Sergey Galtsev', 'email': 'sergey.galtsev@mongodb.com', 'username': 'brushless-glitch'}

Message: Revert "SERVER-52645 passthru LDAP user if no transforms"

This reverts commit d1efabab1f0f1986b9b4a3fde4c1624ba6b59a50.
Branch: master
https://github.com/10gen/mongo-enterprise-modules/commit/e33920406c20e688018151f11dc86bd40ebabd66

Comment by Githook User [ 20/Jan/21 ]

Author:

{'name': 'Sergey Galtsev', 'email': 'sergey.galtsev@mongodb.com', 'username': 'brushless-glitch'}

Message: SERVER-52645 passthru LDAP user if no transforms
Branch: master
https://github.com/10gen/mongo-enterprise-modules/commit/d1efabab1f0f1986b9b4a3fde4c1624ba6b59a50

Generated at Thu Feb 08 05:28:36 UTC 2024 using Jira 9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66.