Mysql: Difference between revisions

From Bashlinux
Jump to navigationJump to search
Content deleted Content added
Manpaz (talk | contribs)
No edit summary
Manpaz (talk | contribs)
No edit summary
Line 24: Line 24:


# Test ssl on Mysql
# Test ssl on Mysql
#* Login into MySQL Server
## Login into MySQL Server
<pre><nowiki>
<pre><nowiki>
mysql -u root -p
mysql -u root -p
</nowiki></pre>
</nowiki></pre>


* Check SSL Cipher
# Check SSL Cipher
<pre><nowiki>
<pre><nowiki>
mysql> show status like 'Ssl_cipher';
mysql> show status like 'Ssl_cipher';
+--------------+-------------------+
+--------------+-------------------+
| Variable_name| Value |
| Variable_name| Value |
+--------------+-------------------+
+--------------+-------------------+
| Ssl_cipher | DHE-RSA-AES256-SHA|
| Ssl_cipher | DHE-RSA-AES256-SHA|
+--------------+-------------------+
+--------------+-------------------+


1 row in set (0.01 sec)
1 row in set (0.01 sec)
</nowiki></pre>
</nowiki></pre>


# Done
# Done

Revision as of 07:51, 5 February 2010

MySQL

MySQL server with SSL

  1. Create a certificate as described in OpenSSL section.
  2. Add the following under each directive on `/etc/my.cnf`, if the directive doesn't exists it should be created
 [client]
 ssl-ca=/etc/pki/openssl/cacert.pem
 ssl-cert=/etc/pki/openssl/client-cert.pem
 ssl-key=/etc/pki/openssl/client-key.pem

 [mysqld]
 ssl-ca=/etc/pki/openssl/cacert.pem
 ssl-cert=/etc/pki/openssl/server-cert.pem
 ssl-key=/etc/pki/openssl/server-key.pem
 
  1. Restart the server
 service mysqld restart
 
  1. Test ssl on Mysql
    1. Login into MySQL Server
  mysql -u root -p
  
  1. Check SSL Cipher
  mysql> show status like 'Ssl_cipher';
  +--------------+-------------------+
  | Variable_name| Value             |
  +--------------+-------------------+
  | Ssl_cipher   | DHE-RSA-AES256-SHA|
  +--------------+-------------------+

  1 row in set (0.01 sec)
  
  1. Done