Beefy Boxes and Bandwidth Generously Provided by pair Networks
good chemistry is complicated,
and a little bit messy -LW
 
PerlMonks  

Re: MySql Access Denied

by sundialsvc4 (Abbot)
on Apr 09, 2014 at 17:36 UTC ( #1081700=note: print w/ replies, xml ) Need Help??


in reply to MySql Access Denied

Also, do not allow your application to connect to the database as a rootly user, lest you run afoul of The Bobby Tables problem.

(Yes, you would be astounded at just how many web-apps are out there, available to the general public, which do have the authority to issue a DROP TABLE command!   Or, heh heh, GRANT ALL PRIVILEGES TO ...)

Your application should connect with one or more application-specific IDs which practice the “principle of least privilege.”   The MySQL system should be configured to consider, not only the user-name but also the IP-address that is making the connection.   Each and every user-id should allow only the least amount of access required to do the job at hand, and, where possible, more than one such id should be used as appropriate.

You may as well start dealing with these issues now.


Comment on Re: MySql Access Denied

Log In?
Username:
Password:

What's my password?
Create A New User
Node Status?
node history
Node Type: note [id://1081700]
help
Chatterbox?
and the web crawler heard nothing...

How do I use this? | Other CB clients
Other Users?
Others cooling their heels in the Monastery: (8)
As of 2014-10-22 02:31 GMT
Sections?
Information?
Find Nodes?
Leftovers?
    Voting Booth?

    For retirement, I am banking on:










    Results (112 votes), past polls