summaryrefslogtreecommitdiff
path: root/src/mongo/db/mongod_options.cpp
diff options
context:
space:
mode:
authorMark Benvenuto <mark.benvenuto@mongodb.com>2020-12-10 19:59:08 -0500
committerEvergreen Agent <no-reply@evergreen.mongodb.com>2020-12-11 03:25:30 +0000
commit19ed9c958b369bd7e1776a57bd406ebe84cf2bec (patch)
tree92feec2a6104e28a340d2a8469220dbda4635a9f /src/mongo/db/mongod_options.cpp
parentdc77c3d344443071783d7098e75d2379bc749be3 (diff)
downloadmongo-19ed9c958b369bd7e1776a57bd406ebe84cf2bec.tar.gz
SERVER-52945 Make mongod use x509 auth on egress connections if NetworkInterface has SSLConnectionContext override even if other egress connections use keyFile auth
Diffstat (limited to 'src/mongo/db/mongod_options.cpp')
-rw-r--r--src/mongo/db/mongod_options.cpp1
1 files changed, 1 insertions, 0 deletions
diff --git a/src/mongo/db/mongod_options.cpp b/src/mongo/db/mongod_options.cpp
index db09e05615f..5b60719af64 100644
--- a/src/mongo/db/mongod_options.cpp
+++ b/src/mongo/db/mongod_options.cpp
@@ -510,6 +510,7 @@ Status storeMongodOptions(const moe::Environment& params) {
if (!replSettings.getReplSetString().empty() &&
(params.count("security.authorization") &&
params["security.authorization"].as<std::string>() == "enabled") &&
+ serverGlobalParams.clusterAuthMode.load() != ServerGlobalParams::ClusterAuthMode_x509 &&
!params.count("security.keyFile")) {
return Status(
ErrorCodes::BadValue,