summaryrefslogtreecommitdiff
path: root/src/mongo/util/net/ssl_options.cpp
diff options
context:
space:
mode:
authorAmalia Hawkins <amalia.hawkins@10gen.com>2014-09-08 15:18:34 -0400
committerAmalia Hawkins <amalia.hawkins@10gen.com>2014-09-11 16:02:49 -0400
commit4c429ebe0a44521a293103c8e3b2fb90f14f056e (patch)
tree7a4d60ade894c0cd0a5ede99a6abed0fd58f4e52 /src/mongo/util/net/ssl_options.cpp
parentf5f42d6c684b8e779aef6889b800235d7417afcb (diff)
downloadmongo-4c429ebe0a44521a293103c8e3b2fb90f14f056e.tar.gz
SERVER-14977: add new alias for sslWeakCertificateValidation option
Diffstat (limited to 'src/mongo/util/net/ssl_options.cpp')
-rw-r--r--src/mongo/util/net/ssl_options.cpp9
1 files changed, 9 insertions, 0 deletions
diff --git a/src/mongo/util/net/ssl_options.cpp b/src/mongo/util/net/ssl_options.cpp
index d90e5540fcd..6e83c17e87d 100644
--- a/src/mongo/util/net/ssl_options.cpp
+++ b/src/mongo/util/net/ssl_options.cpp
@@ -71,6 +71,11 @@ namespace mongo {
"sslWeakCertificateValidation", moe::Switch, "allow client to connect without "
"presenting a certificate");
+ // Alias for --sslWeakCertificateValidation.
+ options->addOptionChaining("net.ssl.allowConnectionsWithoutCertificates",
+ "sslAllowConnectionsWithoutCertificates", moe::Switch,
+ "allow client to connect without presenting a certificate");
+
options->addOptionChaining("net.ssl.allowInvalidHostnames", "sslAllowInvalidHostnames",
moe::Switch, "Allow server certificates to provide non-matching hostnames");
@@ -224,6 +229,10 @@ namespace mongo {
sslGlobalParams.sslWeakCertificateValidation =
params["net.ssl.weakCertificateValidation"].as<bool>();
}
+ else if (params.count("net.ssl.allowConnectionsWithoutCertificates")) {
+ sslGlobalParams.sslWeakCertificateValidation =
+ params["net.ssl.allowConnectionsWithoutCertificates"].as<bool>();
+ }
if (params.count("net.ssl.allowInvalidHostnames")) {
sslGlobalParams.sslAllowInvalidHostnames =
params["net.ssl.allowInvalidHostnames"].as<bool>();