Ensure Passwords Are Not Stored in the Global Configuration – @SYSCONFDIR@/my.cnf Details The use of the password parameter may negatively impact the confidentiality of the user’s password. Solution Use the mysql_config_editor...
Ensure Plugin Directory Has Appropriate Permissions and Ownership Details Limiting the accessibility of these objects will protect the confidentiality, integrity, and availability of the MySQL database. If someone...
Ensure ‘relay_log_basename’ Files Have Appropriate Permissions and Ownership Details Limiting the accessibility of these objects will protect the confidentiality, integrity, and availability of the MySQL logs. Solution Execute...
Ensure ‘slow_query_log’ Has Appropriate Permissions and Ownership Details Limiting the accessibility of these objects will protect the confidentiality, integrity, and availability of the MySQL logs. Solution Execute...
Ensure SSL Key Files Have Appropriate Permissions and Ownership Details Limiting the accessibility of these objects will protect the confidentiality, integrity, and availability of the MySQL database and the...
Place Databases on Non-System Partitions Details Moving the database off the system partition will reduce the probability of denial of service via the exhaustion of...
Use Dedicated Least Privileged Account for MySQL Daemon/Service Details Utilizing a least privilege account for MySQL to execute as may reduce the impact of a MySQL-born vulnerability. A...
Verify that ‘MYSQL_PWD’ Is Not Set Details The use of the MYSQL_PWD environment variable implies the clear text storage of MySQL credentials. Solution Check which users...