Run MongoDB with Secure Configuration Options - config - 'setParameter enableLocalhostAuthBypass = 0'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

enableLocalhostAuthBypass controls whether localhost authentication can be bypassed.

Solution

Set enableLocalhostAuthBypass to 0

See Also

http://docs.mongodb.org/manual/administration/security-checklist/

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7

Plugin: Windows

Control ID: 901e86afeca2155560ffbcab95198a810a00ac3cc1b707fe8290bf8cb35b3127