5.2 Ensure that audit filters are configured properly

Information

MongoDB Enterprise supports auditing of various operations. When enabled, the audit facility, by default, records all auditable operations as detailed in Audit Event Actions, Details, and Results. To specify which events to record, the audit feature includes the --auditFilter option. This check is only for Enterprise editions.

Rationale:

All operations carried out on the database are logged. This helps in backtracking and tracing any incident that occurs.

Solution

Set the audit filters based on the organization's requirements.

Default Value:

Not configured

See Also

https://workbench.cisecurity.org/benchmarks/15135