Re: MySQL Question

From: Date: Thu, 15 Jun 2000 16:52:15 +0000
Subject: Re: MySQL Question
References: 1 2  Groups: php.general 
Request: Send a blank email to php-general+get-1961@lists.php.net to get a copy of this message
At 5:39 PM -0400 2000-06-14, Victor wrote:
I don't think so. PostgreSQL you should never run as root because it allows users to load modules that take on the permissions of the server. Running the daemon of MySQL itself as root shouldn't cause any security issues. However, you might want to check out the docs on www.mysql.com to make sure. The problem with apache.org, I think, was running bugzilla incorrectly. Anyway, readin the mysql docs should be the safest thing. Jason wrote:
With security issues such as this taken into consideration, is there anything wrong with MySQL running as root? If the user permissions are closely monitored and it doesn't allow remote connections?
Jason
Don't run the MySQL server as root unless you have a very good reason to do so and you understand the security implications of doing this. (For example, the server has full access to every file on the machine where it's running.) In fact, recent versions of the server will refuse to run as root unless you explicitly specify --user=root indicating that you want it to run that way. -- Paul DuBois, paul@snake.net

« previous php.general (#1961) next »