Help - Search - Members - Calendar
Full Version: mySql wipeout
The Planet Forums > General > The Lounge
webhostau
any one else experience mysql hacking? all customers mysql gone icon_rolleyes.gif true.. icon_biggrin.gif
JustGags
I don't allow outside access to MySQL... local socket connections are the safest.
webhostau
i totally agree.
Guspaz
I *think* I have MySQL blocked off at the firewall. But I'm not sure. I've been meaning to do an extensive review of my firewall rules with a Nessus report in hand, but it just hasn't been a priority for me with my server only being used for personal use.

That said I'm pretty sure I have permissions for MySQL set up to only allow connections from localhost. That's not good enough though, if there were an exploit found.
Blue|Fusion
Add to my.cnf:

skip-networking

This will disable connections to MySQL except through the socket.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2010 Invision Power Services, Inc.