[SERVER-8701] SSL - supply bad --sslPEMKeyPassword - error message could be "improved" Created: 25/Feb/13  Updated: 14/Jul/17  Resolved: 14/Jul/17

Status: Closed
Project: Core Server
Component/s: Security
Affects Version/s: None
Fix Version/s: None

Type: Bug Priority: Major - P3
Reporter: Gregor Macadam Assignee: DO NOT USE - Backlog - Platform Team
Resolution: Won't Fix Votes: 0
Labels: None
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Attachments: File mark.pem    
Issue Links:
Depends
Backwards Compatibility: Fully Compatible
Operating System: ALL
Participants:

 Description   

Start mongo shell specifying encrypted cert file and supplying invalid password. Should FAIL With informative error message.

ubuntu@ip-10-36-133-56:~/mongodb-linux-x86_64-subscription-ubuntu1104-2.4.0-rc0$ ./bin/mongo --ssl --sslPEMKeyFile ../mark.pem --sslPEMKeyPassword mongo1
MongoDB shell version: 2.4.0-rc0
connecting to: test
Mon Feb 25 10:07:48.138 ERROR: cannot read key file: ../mark.pem error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt
Mon Feb 25 10:07:48.139 Error: ssl initialization problem src/mongo/shell/mongo.js:112
exception: connect failed



 Comments   
Comment by Mira Carey [ 14/Jul/17 ]

We have no strong desire to change the behavior of openssl at this time

Generated at Thu Feb 08 03:18:09 UTC 2024 using Jira 9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66.