AdminSalman (Admin, MongoDB)

My feedback

  1. 5 votes

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Database  ·  Flag idea as inappropriate…  ·  Admin →
    An error occurred while saving the comment
    AdminSalman (Admin, MongoDB) commented  · 

    MongoDB audit guarantees require that audit entry is written before a document is written to the database. The concern with writing audit entries to a remote endpoint such as Kafka is that network latency and availability can cause unpredictability in the completion of database operations. Therefore, we recommend shipping out audit logs to a remote endpoint such as Kafka or a SIEM using log forwarding tools.

  2. 12 votes

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    4 comments  ·  Database  ·  Flag idea as inappropriate…  ·  Admin →
    An error occurred while saving the comment
    AdminSalman (Admin, MongoDB) commented  · 

    Thanks for the feature request. For folks looking to implement password policies for the SCRAM method, we recommend using Hashicorp. Vault provides comprehensive life cycle management for passwords, as well as certificates.

    Vault has a secrets engine for MongoDB.
    https://www.vaultproject.io/docs/secrets/databases/mongodb

  3. 1 vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Realm » MongoDB Realm (Cloud)  ·  Flag idea as inappropriate…  ·  Admin →
    An error occurred while saving the comment
    AdminSalman (Admin, MongoDB) commented  · 

    Hi Ray, if you are running MongoDB database on-prem and looking for a security checklist, it can be found here:
    https://docs.mongodb.com/manual/administration/security-checklist/

    Hope this helps.

  4. 3 votes

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  Atlas » IAM  ·  Flag idea as inappropriate…  ·  Admin →
    An error occurred while saving the comment
    AdminSalman (Admin, MongoDB) commented  · 

    Thanks, Calvin. We are looking into this.

  5. 13 votes

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    under review  ·  2 comments  ·  Atlas » Other  ·  Flag idea as inappropriate…  ·  Admin →
    An error occurred while saving the comment
    AdminSalman (Admin, MongoDB) commented  · 
  6. 1 vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Atlas » IAM  ·  Flag idea as inappropriate…  ·  Admin →
    An error occurred while saving the comment
    AdminSalman (Admin, MongoDB) commented  · 

    Hi Geoffrey,

    Thank you for sharing the suggestion. Could you share here or in an email (product.security@mongodb.com) the scenario under which deleting a user is not feasible when a certificate is compromised?

    Salman

  7. 1 vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Atlas » Other  ·  Flag idea as inappropriate…  ·  Admin →
    AdminSalman (Admin, MongoDB) shared this idea  · 
  8. 13 votes

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Atlas » IAM  ·  Flag idea as inappropriate…  ·  Admin →
    AdminSalman (Admin, MongoDB) shared this idea  · 

Feedback and Knowledge Base