★ wanayoo — archive 1999 http://www.linuxsecurity.com/articles/server_security_article-7894.htmlNouvelle recherche | Portail wanayoo





Features: A Practical Approach of Stealthy Remote Administration
Basic Intrusion Prevention using Content-based Filtering
Newsletter: Linux Advisory Watch
Newsletter: Linux Security Week
Download EnGarde Today!


Documentation
Security Sources
Forums
Firewalls
Host Security
Cryptography
Network Security
Intrusion Detection
Organizations/Events
Server Security
Vendors/Products
Projects
General
Privacy
Government
Hacks/Cracks
 

 
  News: Server Security   9/2/2003 20:38
Securing MySQL: step-by-step

Published By: SecurityFocus
Posted By: Eric Lubow
9/2/2003

MySQL is one of the most popular databases on the Internet and it is often used in conjunction with PHP. Besides its undoubted advantages such as easy of use and relatively high performance, MySQL offers simple but very effective security mechanisms. Unfortunately, the default installation of MySQL, and in particular the empty root password and the potential vulnerability to buffer overflow attacks, makes the database an easy target for attacks.

This article describes the basic steps which should be performed in order to secure a MySQL database against both local and remote attacks. This is the third and last of the series of articles devoted to securing Apache, PHP and MySQL.

 
We've Made Bad Security Tradeoffs
Sep 3

How many security vulnerabilities a month are acceptable?
Sep 3

Honeynet Scan of The Month #29
Sep 3