MySQL的安全問題從安裝開始說起_MySQL教程

      編輯Tag賺U幣

      推薦:SQL查詢超時的設置方法(關于timeout的處理)
      為了優化OceanBase的query timeout設置方式,特調研MySQL關于timeout的處理,下面與大家分享下處理記錄,感興趣的朋友可以參考下哈

      當你安裝 MySQL 完后、會有個提示:

      [root@localhost Desktop]# rpm -ivh MySQL-server-5.5.28-1.rhel5.i386.rpm
      Preparing... ########################################### [100%]
      1:MySQL-server ########################################### [100%]


      PLEASE REMEMBER TO SET A PASSWORD FOR THE MySQL root USER !
      To do so, start the server, then issue the following commands:

      /usr/bin/mysqladmin -u root password 'new-password'
      /usr/bin/mysqladmin -u root -h localhost.localdomain password 'new-password'


      Alternatively you can run:

      /usr/bin/mysql_secure_installation

      **對于這 2 種方式、我個人認為、mysql_secure_installation 比較好用***

      which will also give you the option of removing the test
      databases and anonymous user created by default
      . This is
      strongly recommended for production servers.


      **我覺得、這里的關鍵應該是能夠把匿名用戶給刪掉***
      See the manual for more instructions.

      Please report any problems with the /usr/bin/mysqlbug script!


      By default, a MySQL installation has an anonymous user, allowing anyone
      to log into MySQL without having to have a user account created for

      them. This is intended only for testing, and to make the installationgo a bit smoother.

      You should remove them before moving into a production environment

      **匿名用戶的危害****

      所以、生產環境請務必刪之!!


      我選擇 mysql_secure_installation


      [root@localhost Desktop]# mysql_secure_installation

      NOTE: RUNNING ALL PARTS OF THIS SCRIPT IS RECOMMENDED FOR ALL MySQL
      SERVERS IN PRODUCTION USE! PLEASE READ EACH STEP CAREFULLY!

      In order to log into MySQL to secure it, we'll need the current
      password for the root user. If you've just installed MySQL, and
      you haven't set the root password yet, the password will be blank,
      so you should just press enter here.

      Enter current password for root (enter for none):
      OK, successfully used password, moving on...


      Setting the root password ensures that nobody can log into the MySQL
      root user without the proper authorisation.

      You already have a root password set, so you can safely answer 'n'.

      Change the root password? [Y/n] n
      ... skipping.

      By default, a MySQL installation has an anonymous user, allowing anyone
      to log into MySQL without having to have a user account created for
      them. This is intended only for testing, and to make the installation
      go a bit smoother. You should remove them before moving into a
      production environment.

      Remove anonymous users? [Y/n] y
      ... Success!

      Normally, root should only be allowed to connect from 'localhost'. This
      ensures that someone cannot guess at the root password from the network.

      Disallow root login remotely? [Y/n] n
      ... skipping.

      By default, MySQL comes with a database named 'test' that anyone can
      access. This is also intended only for testing, and should be removed
      before moving into a production environment.

      Remove test database and access to it? [Y/n] n
      ... skipping.


      Reloading the privilege tables will ensure that all changes made so far
      will take effect immediately.


      Reload privilege tables now? [Y/n] y
      ... Success!


      Cleaning up...


      All done! If you've completed all of the above steps, your MySQL
      installation should now be secure.

      Thanks for using MySQL!

      分享:基于ubuntu中使用mysql實現opensips用戶認證的解決方法
      本篇文章小編為大家介紹,基于ubuntu中使用mysql實現opensips用戶認證的解決方法。需要的朋友參考下

      來源:模板無憂//所屬分類:MySQL教程/更新時間:2013-04-22
      相關MySQL教程