Skip to content
Closed
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
11 changes: 11 additions & 0 deletions source/reference/system-defined-roles.txt
Original file line number Diff line number Diff line change
Expand Up @@ -475,6 +475,17 @@ The following role provides full privileges on all resources in the cluster:
Provides access to all the operations and all the resources of *of all
other roles combined*. A user with this role is a superuser.

Internal Role
-------------

.. authrole:: __system

MongoDB assigns this role to user objects that represent cluster members,
such as replica set members and :program:`mongos` instances. The role
entitles its holder to take any action against any object in the database.
**Do not** assign this role to user objects representing applications or
human administrators, other than in exceptional circumstances.

.. todo: does this still apply?

.. :dbcommand:`applyOps`, :dbcommand:`eval`, and :method:`db.eval()` require
Expand Down