SV-279331r1179501_rule
V-279331
SRG-APP-000001-DB-000031
MD8X-00-000150
CAT III
10
MongoDB can limit the total number of connections served by the mongod process by setting the following in the MongoDB configuration file (default location: /etc/mongod.conf):
net:
maxIncomingConnections: %int%
Refer to the following documentation:
https://www.mongodb.com/docs/manual/reference/configuration-options/
Products outside of MongoDB can be used to monitor database sessions and limit the maximum number of connections that can be made.
Alternatively, most Unix-like operating systems, including Linux and macOS, provide ways to limit and control the usage of system resources such as threads, files, and network connections on a per-process and per-user basis.
These ulimits prevent single users from using too many system resources.
The following is the MongoDB documentation regarding these user limits: https://www.mongodb.com/docs/manual/reference/ulimit/.
Mongo can limit the total number of connections.
Verify the MongoDB configuration file (default location: /etc/mongod.conf) contains the following:
net:
maxIncomingConnections: %int%
If this parameter is not present, or the OS is not used to limit connections, this is a finding.
V-279331
False
MD8X-00-000150
Mongo can limit the total number of connections.
Verify the MongoDB configuration file (default location: /etc/mongod.conf) contains the following:
net:
maxIncomingConnections: %int%
If this parameter is not present, or the OS is not used to limit connections, this is a finding.
M
5728