Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | SERVER-12088 Enable usePowerOf2Sizes as server-wide default | Dan Pasette | 2014-01-21 | 1 | -2/+14 |
| | |||||
* | SERVER-8871 admin hints | Benety Goh | 2014-01-15 | 1 | -0/+23 |
| | |||||
* | SERVER-5470 updated plan cache commands per updated spec | Benety Goh | 2014-01-15 | 1 | -1/+1 |
| | |||||
* | SERVER-12035 Allow clusterMonitor role to get the current profiling level | Spencer T Brody | 2014-01-08 | 1 | -1/+38 |
| | |||||
* | SERVER-12067 Make copydb command work with auth enabled when source is local | Spencer T Brody | 2014-01-07 | 3 | -1/+52 |
| | |||||
* | SERVER-11961 Make names of the direct and indirect privileges and roles ↵ | Spencer T Brody | 2014-01-07 | 1 | -7/+7 |
| | | | | fields consistent in usersInfo and rolesInfo | ||||
* | SERVER-12119 Add new command to allow applications to append notes to the oplog | Spencer T Brody | 2014-01-07 | 1 | -0/+23 |
| | |||||
* | SERVER-12241 Combine internal action types into one | Andreas Nilsson | 2014-01-07 | 1 | -6/+6 |
| | |||||
* | Rename role groups requiring "read" privileges from readWrite to read in test | Spencer T Brody | 2014-01-06 | 1 | -31/+31 |
| | |||||
* | Add backup and restore roles to commands test | Spencer T Brody | 2014-01-06 | 2 | -15/+53 |
| | |||||
* | Add jstest for access control of inprog, killOp, and unlock operations | Spencer T Brody | 2014-01-06 | 1 | -0/+229 |
| | |||||
* | Add jstest that updating user/role data on one mongos propagates to the ↵ | Spencer T Brody | 2014-01-06 | 1 | -0/+171 |
| | | | | other mongoses | ||||
* | Add jstest for access control around user and role modifications | Spencer T Brody | 2014-01-06 | 1 | -0/+307 |
| | |||||
* | SERVER-5470 added plan cache DB commands | Benety Goh | 2013-12-31 | 1 | -0/+46 |
| | |||||
* | Add jstest that user and role information gets replicated to secondaries | Spencer T Brody | 2013-12-13 | 1 | -0/+233 |
| | |||||
* | Add jstest for role management commands | Spencer T Brody | 2013-12-11 | 1 | -0/+270 |
| | |||||
* | Add jstest for user management commands | Spencer T Brody | 2013-12-10 | 1 | -0/+186 |
| | |||||
* | Add basic jstest for user defined roles | Spencer T Brody | 2013-12-04 | 1 | -0/+149 |
| | |||||
* | SERVER-11866 Make renameCollectionSameDB not work if you have find on the ↵ | Spencer T Brody | 2013-12-03 | 3 | -413/+460 |
| | | | | dest but not the source | ||||
* | SERVER-11481: ignore top command during sharded auth test | Scott Hernandez | 2013-11-19 | 1 | -0/+1 |
| | |||||
* | SERVER-10151 Re-enable the 'Test change role' section of ↵ | Spencer T Brody | 2013-11-18 | 1 | -13/+8 |
| | | | | auth/basic_role_auth.js by using the updateUser command | ||||
* | SERVER-11709 RoleGraph should ignore oplog entries for the applyOps command. | Andy Schwerin | 2013-11-15 | 1 | -0/+220 |
| | | | | | | The individual operations in the command will be separately applied, so there's nothing for the RoleGraph to do with the applyOps command itself. Includes an integration test of role replication. | ||||
* | SERVER-9514 Account for new privileges in clusterManager built-in role in tests. | Andy Schwerin | 2013-11-14 | 1 | -2/+2 |
| | |||||
* | SERVER-9513 Merge several ActionTypes together | Spencer T Brody | 2013-11-12 | 1 | -10/+10 |
| | |||||
* | SERVER-10944 Prevent creating and granting roles on the $external database | Spencer T Brody | 2013-11-11 | 1 | -1/+1 |
| | |||||
* | SERVER-11085 Make renameCollection adminOnly on mongos, to match behavior on ↵ | Spencer T Brody | 2013-11-08 | 1 | -4/+0 |
| | | | | mongod | ||||
* | SERVER-10963 Remove unnecessary privilege requirements from aggregation | Spencer T Brody | 2013-11-08 | 1 | -4/+0 |
| | |||||
* | Make sure cluster roles have access to system collections in config db | Spencer T Brody | 2013-11-08 | 1 | -1/+1 |
| | |||||
* | SERVER-11388 Only allow roles to have privileges on their own database, ↵ | Spencer T Brody | 2013-11-06 | 1 | -7/+7 |
| | | | | unless the role is on the 'admin' db | ||||
* | SERVER-11555 Replace all occurrences of addUser with createUser in jstests | Spencer T Brody | 2013-11-06 | 24 | -64/+64 |
| | |||||
* | Change several sharding commands access control checks to use the ↵ | Spencer T Brody | 2013-11-06 | 1 | -18/+18 |
| | | | | database/collection they target rather than the cluster resource | ||||
* | Rename commands js tests | Spencer T Brody | 2013-11-05 | 3 | -2/+2 |
| | |||||
* | SERVER-9516 Enhance privileges of builtin roles to handle auth upgrade ↵ | Andy Schwerin | 2013-11-05 | 1 | -0/+2 |
| | | | | | | | | | | | system collections. This commit lets userAdminAnyDatabase role run listDatabases, since it was the only AnyDatabase role that couldn't. It also uses constants for auth collections in RoleGraph. Finally, it grants access to new_users and backup_users. | ||||
* | SERVER-8580 add auth test for commands with user-defined roles | David Storch | 2013-11-04 | 4 | -1465/+2609 |
| | | | | Signed-off-by: Spencer T Brody <spencer@10gen.com> | ||||
* | Give external users a 'credentials' field | Spencer T Brody | 2013-10-29 | 1 | -1/+1 |
| | |||||
* | SERVER-9579 fixed dbpath prefix for all smoke tests that start (multiple) ↵ | Benety Goh | 2013-10-29 | 8 | -12/+12 |
| | | | | mongod processes through the mongo shell | ||||
* | QA-341 Update jstests/auth/commands.js test to correctly use new built-in ↵ | Spencer T Brody | 2013-10-29 | 1 | -22/+68 |
| | | | | roles and detect invalid roles | ||||
* | SERVER-11428 Fix copyauth.js test in enterprise builders by forcing ↵ | Spencer T Brody | 2013-10-28 | 1 | -0/+2 |
| | | | | authMechanism to MONGODB-CR | ||||
* | SERVER-8213 Make copyDB and clone work with auth when using new-style users | Spencer T Brody | 2013-10-28 | 1 | -4/+5 |
| | |||||
* | SERVER-9514 Split up clusterAdmin role actions into three new more-specific ↵ | Spencer T Brody | 2013-10-28 | 1 | -85/+182 |
| | | | | roles | ||||
* | SERVER-11309 Fix namespace parsing in access control check for ↵ | Spencer T Brody | 2013-10-24 | 1 | -3/+10 |
| | | | | checkShardingIndex command | ||||
* | SERVER-9233 fix sporadic smokeAuth buildbot failures | David Storch | 2013-10-23 | 1 | -0/+2 |
| | | | | Signed-off-by: Spencer T Brody <spencer@10gen.com> | ||||
* | SERVER-9233 add comprehensive jstest for role-based access control for commands | David Storch | 2013-10-18 | 1 | -0/+1313 |
| | | | | Signed-off-by: Spencer T Brody <spencer@10gen.com> | ||||
* | SERVER-10794 Maintain backwards-compatible form of addUser for one more release | Spencer T Brody | 2013-10-11 | 18 | -40/+54 |
| | |||||
* | SERVER-9515 SERVER-6246 SERVER-9517 Instead of "name", in user objects use ↵ | Spencer T Brody | 2013-10-10 | 4 | -22/+22 |
| | | | | "user" and in role objects use "role" | ||||
* | SERVER-6246 SERVER-9515 Update usersInfo and rolesInfo commands to new API | Spencer T Brody | 2013-10-06 | 1 | -1/+1 |
| | |||||
* | SERVER-6246 SERVER-9515 Rename removeUser and removeRole commands to ↵ | Spencer T Brody | 2013-10-06 | 3 | -3/+3 |
| | | | | dropUser/dropRole | ||||
* | SERVER-9517 Rename "source" field for users and roles to "db" | Spencer T Brody | 2013-10-06 | 4 | -7/+7 |
| | |||||
* | SERVER-10670 Maintain role graph consistency. | Andy Schwerin | 2013-10-05 | 1 | -10/+2 |
| | | | | | | | | Keeps the RoleGraph up to date in mongod, and converts MongoS to simply ask the config server for required information about users and roles. Performs somewhat aggressive cache invalidation of the users cache in mongod. Still no cache invalidation in mongos. | ||||
* | SERVER-1105 Update AuthorizationSession's logic for collection-level access ↵ | Andy Schwerin | 2013-09-26 | 3 | -20/+61 |
| | | | | | | | | control. Also requires changing the privileges of the built-in roles. This patch takes the opportunity to remove the 2.2-style read-only roles in favor of the 2.4-style "read" and "readAnyDatabase" roles, and renames the 2.2-style read-write roles "dbOwner" and "root". The "root" name, at least, is subject to change prior to the next unstable release. Test harnesses are updated as needed to use the correct builtin roles. |