官术网_书友最值得收藏!

  • Mastering MongoDB 3.x
  • Alex Giamas
  • 108字
  • 2021-08-20 10:10:47

Best practices for security

Security is always a multi-layered approach and these few recommendations do not form an exhaustive list, rather just the bare basics that need to be done in any MongoDB database:

  • HTTP status interface should be disabled.
  • REST API should be disabled.
  • JSON API should be disabled.
  • Connect to MongoDB using SSL.
  • Audit system activity.
  • Use a dedicated system user to access MongoDB with appropriate system level access
  • Disable server-side scripting if not needed. This will affect MapReduce, built-in db.group() commands, and $where operations. If these are not used in your codebase, it is better to disable server-side scripting at startup using the --noscripting parameter.
主站蜘蛛池模板: 龙井市| 阜城县| 登封市| 闸北区| 宁河县| 婺源县| 新昌县| 崇阳县| 南召县| 潮安县| 新乡市| 汤阴县| 如东县| 拜城县| 福贡县| 清丰县| 奇台县| 英山县| 屏东市| 安平县| 灵川县| 阳高县| 三门峡市| 漳州市| 神木县| 鹤壁市| 商丘市| 桂林市| 麦盖提县| 金乡县| 黎城县| 周宁县| 百色市| 嘉义市| 钟祥市| 毕节市| 亚东县| 深泽县| 巴彦淖尔市| 宜昌市| 陆丰市|