[SERVER-54084] Add server parameter tenantMigrationDisableX509Auth to enable keyfile auth testing Created: 27/Jan/21  Updated: 29/Oct/23  Resolved: 02/Feb/21

Status: Closed
Project: Core Server
Component/s: Sharding
Affects Version/s: None
Fix Version/s: 4.9.0

Type: Task Priority: Major - P3
Reporter: Cheahuychou Mao Assignee: Cheahuychou Mao
Resolution: Fixed Votes: 0
Labels: pm-1791_other_required
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Issue Links:
Depends
Duplicate
is duplicated by SERVER-53341 Gate tenant migration commands on SSL Closed
Related
related to SERVER-54085 Remove server parameter tenantMigrati... Closed
Backwards Compatibility: Fully Compatible
Sprint: Sharding 2021-02-08
Participants:

 Description   
  1. Add a server parameter named tenantMigrationDisableX509Auth (default: false) that makes it legal for the tenant migration commands to not contain certificate fields. That server parameter should be removed once Cloud is ready to test with x509 auth.
  2. Make TenantMigrationDonorService only initialize transientSSLParams on the donor side and set sslMode if tenantMigrationDisableX509Auth is false.
  3. Same for TenantMigrationRecipientService.


 Comments   
Comment by Githook User [ 02/Feb/21 ]

Author:

{'name': 'Cheahuychou Mao', 'email': 'mao.cheahuychou@gmail.com', 'username': 'cheahuychou'}

Message: SERVER-54084 Add server parameter tenantMigrationDisableX509Auth to enable keyfile auth testing
Branch: master
https://github.com/mongodb/mongo/commit/8baad6fdb799b24bbc999089773698a10bfeaecc

Comment by Githook User [ 02/Feb/21 ]

Author:

{'name': 'Cheahuychou Mao', 'email': 'mao.cheahuychou@gmail.com', 'username': 'cheahuychou'}

Message: SERVER-54084 Formalize ssl configuration validation for tenant migration
Branch: master
https://github.com/mongodb/mongo/commit/739d938be8bb992190b01004f39eecc2658c5c38

Generated at Thu Feb 08 05:32:37 UTC 2024 using Jira 9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66.