Home Backend Development PHP Tutorial How to make MySQL secure against decryption masters_PHP Tutorial

How to make MySQL secure against decryption masters_PHP Tutorial

Jul 13, 2016 pm 05:01 PM
mysql by use Password Safety how hour server Decrypt connect master

When you connect to a MySQL server, you should usually use a password. Passwords are not transmitted over the connection in clear text.

All other information is transmitted as text that can be read by anyone. If you're worried about this, you can use the compression protocol (MySQL 3.22 and above) to make things harder. Even to make everything more secure, you should install ssh (see http://www.cs.hut.fi/ssh). Using it, you can get an encrypted TCP/IP connection between a MySQL server and a MySQL client.

In order to make a MySQL system secure, you are urged to consider the following recommendations:
Use passwords for all MySQL users. Remember, if other_user does not have a password, anyone can log in as anyone else simply with mysql -u other_user db_name. For client/server applications, it is common practice for the client to specify any username. Before you run it, you can change the passwords for all users, or just the MySQL root password, by editing the mysql_install_db script, like this:
shell> mysql -u root mysql
mysql> UPDATE user SET Password=PASSWORD( 'new_password')
WHERE user='root';
mysql> FLUSH PRIVILEGES;
Do not run the MySQL daemon as the root user on Unix. mysqld can run as any user, you can also create a new Unix user mysql to make everything more secure. If you are running mysqld as another Unix user, you do not need to change the root username in the user table, because the MySQL username has nothing to do with the Unix username. You can edit the mysql.server startup script mysqld as another Unix user. Usually this is done with the su command. For more details, see 18.8 How to run MySQL as a normal user.

If you put a Unix root user password in the mysql.server script, make sure that the script is readable only by root.

Check that the Unix user running mysqld is the only user with read/write permissions in the database directory.

Do not give process permissions to all users. The output of mysqladmin processlist displays the text of the currently executed query. If another user issues an UPDATE user SET password=PASSWORD('not_secure') query, any user allowed to execute that command may see it. mysqld reserves an extra connection for users with process privileges so that a MySQL root user can log in and check even if all normal connections are in use.

Do not give file permissions to all users.

Any user with this permission can write a file in the file system with mysqld daemon permissions! To make this safer, all files generated with SELECT ... INTO OUTFILE are readable by everyone, and you cannot overwrite existing files.

The file permission can also be used to read any file accessible as the Unix user running the server. This can be abused, for example, by using LOAD DATA to load "/etc/passwd" into a database table, which can then be read in using SELECT.

If you don't trust your DNS, you should use IP numbers instead of hostnames in authorization tables. In principle, the --secure option to mysqld should make the hostname more secure. In any case, you should be very careful about using hostnames that contain wildcards.


www.bkjia.comtruehttp: //www.bkjia.com/PHPjc/631110.htmlTechArticleWhen you connect to a MySQL server, you should usually use a password. Passwords are not transmitted over the connection in clear text. All other information is transmitted as text that can be read by anyone. Such as...
Statement of this Website
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn

Hot AI Tools

Undresser.AI Undress

Undresser.AI Undress

AI-powered app for creating realistic nude photos

AI Clothes Remover

AI Clothes Remover

Online AI tool for removing clothes from photos.

Undress AI Tool

Undress AI Tool

Undress images for free

Clothoff.io

Clothoff.io

AI clothes remover

Video Face Swap

Video Face Swap

Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Tools

Notepad++7.3.1

Notepad++7.3.1

Easy-to-use and free code editor

SublimeText3 Chinese version

SublimeText3 Chinese version

Chinese version, very easy to use

Zend Studio 13.0.1

Zend Studio 13.0.1

Powerful PHP integrated development environment

Dreamweaver CS6

Dreamweaver CS6

Visual web development tools

SublimeText3 Mac version

SublimeText3 Mac version

God-level code editing software (SublimeText3)

MySQL's Role: Databases in Web Applications MySQL's Role: Databases in Web Applications Apr 17, 2025 am 12:23 AM

The main role of MySQL in web applications is to store and manage data. 1.MySQL efficiently processes user information, product catalogs, transaction records and other data. 2. Through SQL query, developers can extract information from the database to generate dynamic content. 3.MySQL works based on the client-server model to ensure acceptable query speed.

How to start mysql by docker How to start mysql by docker Apr 15, 2025 pm 12:09 PM

The process of starting MySQL in Docker consists of the following steps: Pull the MySQL image to create and start the container, set the root user password, and map the port verification connection Create the database and the user grants all permissions to the database

Laravel Introduction Example Laravel Introduction Example Apr 18, 2025 pm 12:45 PM

Laravel is a PHP framework for easy building of web applications. It provides a range of powerful features including: Installation: Install the Laravel CLI globally with Composer and create applications in the project directory. Routing: Define the relationship between the URL and the handler in routes/web.php. View: Create a view in resources/views to render the application's interface. Database Integration: Provides out-of-the-box integration with databases such as MySQL and uses migration to create and modify tables. Model and Controller: The model represents the database entity and the controller processes HTTP requests.

Solve database connection problem: a practical case of using minii/db library Solve database connection problem: a practical case of using minii/db library Apr 18, 2025 am 07:09 AM

I encountered a tricky problem when developing a small application: the need to quickly integrate a lightweight database operation library. After trying multiple libraries, I found that they either have too much functionality or are not very compatible. Eventually, I found minii/db, a simplified version based on Yii2 that solved my problem perfectly.

How to install mysql in centos7 How to install mysql in centos7 Apr 14, 2025 pm 08:30 PM

The key to installing MySQL elegantly is to add the official MySQL repository. The specific steps are as follows: Download the MySQL official GPG key to prevent phishing attacks. Add MySQL repository file: rpm -Uvh https://dev.mysql.com/get/mysql80-community-release-el7-3.noarch.rpm Update yum repository cache: yum update installation MySQL: yum install mysql-server startup MySQL service: systemctl start mysqld set up booting

Centos install mysql Centos install mysql Apr 14, 2025 pm 08:09 PM

Installing MySQL on CentOS involves the following steps: Adding the appropriate MySQL yum source. Execute the yum install mysql-server command to install the MySQL server. Use the mysql_secure_installation command to make security settings, such as setting the root user password. Customize the MySQL configuration file as needed. Tune MySQL parameters and optimize databases for performance.

Laravel framework installation method Laravel framework installation method Apr 18, 2025 pm 12:54 PM

Article summary: This article provides detailed step-by-step instructions to guide readers on how to easily install the Laravel framework. Laravel is a powerful PHP framework that speeds up the development process of web applications. This tutorial covers the installation process from system requirements to configuring databases and setting up routing. By following these steps, readers can quickly and efficiently lay a solid foundation for their Laravel project.

MySQL and phpMyAdmin: Core Features and Functions MySQL and phpMyAdmin: Core Features and Functions Apr 22, 2025 am 12:12 AM

MySQL and phpMyAdmin are powerful database management tools. 1) MySQL is used to create databases and tables, and to execute DML and SQL queries. 2) phpMyAdmin provides an intuitive interface for database management, table structure management, data operations and user permission management.

See all articles