Run MongoDB with a Dedicated User

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Run MongoDB processes with a dedicated operating system user account. Ensure that the account has permissions to access data but no unnecessary permissions.
NOTE: Update MONGO_SVC with the appropriate value for the local environment
NOTE: Update MONGO_SVC_ACCT with the appropriate value for the local environment

Solution

Configure the MongoDB service to use the appropriate account.

See Also

http://docs.mongodb.org/manual/administration/security-checklist/

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6

Plugin: Windows

Control ID: 1fbb189e1aef1b9e497c8ba34993f9576096c49b839a583d6468df37cb6d5a56