Skip to Main Content

MongoByte MongoDB Logo

Welcome to the new MongoDB Feedback Portal!

{Improvement: "Your idea"}
We’ve upgraded our system to better capture and act on your feedback.
Your feedback is meaningful and helps us build better products.

ADD NEW FEEDBACK

Security, IAM, and Compliance

Allow to specify principals in resource policies

What problem are you trying to solve? Focus on the what and why of the need you have, not the how you'd like it solved. We manage the Atlas MongoDB foundation for our company and provide our customers projects where they are free to create th...
Luca Lombardo 6 months ago in IAM 0 Future Consideration

API Key Expiration date

We have a security reqirement that secrets must expire after 2 years. Therefore it would be awesome if MongoDB Atlas API Keys would support an expiration date. Somethig similar exists for the IP Whitelisting. Here we have the option to remove IP...
Guest over 5 years ago in Atlas (Control Plane and Data Plane RBAC) 8 Started

Migrate users and roles with cluster data

It would be great to be able to transfer users with their credentials and permissions from our on-premises deployment to Atlas during migration to avoid having to recreate those users using the Atlas interface or API.
Guest about 6 years ago in Atlas (Control Plane and Data Plane RBAC) 3 Submitted

A new role for security auditing purposes

Currently MongoDB Atlas provides two read only roles at project level ("Project Read Only", and " Project Data Access Read Only"). "Project Data Access Read Only" seems to allow access to the data also, while "Project Read Only" role does not all...
Guest over 2 years ago in Atlas (Control Plane and Data Plane RBAC) 1 Submitted

Backup for project user

Hello, it would be good if we could better granulate which users have access to cloud backups. Currently only a project user with Project Owner rights can perform backups, restores etc. It would be really cool if some users, such as developers...
Guest over 3 years ago in Atlas (Control Plane and Data Plane RBAC) 1 Submitted

Add support for custom comment field per API key access list entry

Currently, in the API Access List for an API Key in MongoDB Atlas, there is no way to associate metadata or context with each IP address or CIDR block. This makes it difficult to track the purpose or ownership of each entry, especially in environm...
Oleksandr Shmyrko about 1 year ago in Atlas (Control Plane and Data Plane RBAC) 0 Submitted

Organization Service Accounts: "last used" date for "API Access List" missing in Atlas console

What problem are you trying to solve? Focus on the what and why of the need you have, not the how you'd like it solved. I'm auditing our use of service keys. To understand whether a given ACL entry is still required, it would help me to see t...
Ralf Bergs 4 months ago in IAM 0 Submitted

API keys should route only via peered vnets rather than special public ip whitelisitng

What problem are you trying to solve? Focus on the what and why of the need you have, not the how you'd like it solved. Atlas Administration API keys require public IP whitelisting to function. In enterprise environments running on private cl...
RuthvikReddy Anumasu 4 months ago in IAM / Infra-as-code & APIs 0 Future Consideration

Expose the killOp() action when creating custom roles in Atlas UI

It would be nice to have the `killOp()` action exposed when creating a custom role in Atlas. I also think it would make sense to grant this action to the `atlasAdmin` role, but at a minimum I feel that Project Owners should be able to create a cu...
Chandler Wyatt about 6 years ago in Atlas (Control Plane and Data Plane RBAC) 1 Submitted

Maintain database ID/Password profile inside database

Requirement is to maintain database id/passwords with standard details inside database like (Last_login date/ password_change_date) and control of passwords related how many failed_login_attempts/password_life_time/password_complexity/password_loc...
Guest over 1 year ago in Security, IAM, and Compliance 1 Submitted