Limit Network Exposure - 'net.http.JSONPEnabled != true'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

net.http.JSON controls PJSONP access via an HTTP interface. The net.http.JSONPEnabled option enables the HTTP interface, even if the HTTP interface option is disabled.

Solution

Unless required the JSON should be disabled.

See Also

http://docs.mongodb.org/manual/administration/security-checklist/

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7

Plugin: Unix

Control ID: 1faaf85ae80c205512f7a4f681683db1588f21b016898068fdad8e144502c037