Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 30 May 2001 01:35:29 -0400
From:      "Ryan Masse" <mail@max-info.net>
To:        "Bill Moran" <wmoran@iowna.com>
Cc:        "FreeBSD-Questions" <freebsd-questions@freebsd.org>
Subject:   Re: mysql tcp connection
Message-ID:  <00de01c0e8ca$56b4c820$fd00a8c0@Home>
References:  <3B144374.996414E9@optonline.net> <3B144ED5.F86EE61B@iowna.com> <3B148021.60CB7680@optonline.net> <00a901c0e8c7$d05a7920$fd00a8c0@Home> <3B14855C.E998927E@iowna.com>

next in thread | previous in thread | raw e-mail | index | archive | help
security wise i had removed all anonymous users from the user table. the '%'
was for test purposes. A more defined user@'ip/subnet' will be implemented
once the remote connection has proven itself.

Ryan


> That's a rather knock-down, drag-out approach to security. You basically
> removed all restrictions on what host a user can connect from. You may
> have also remove all access restrictions altogether. Have you attempted
> remote login without any username or password to make sure it will deny
> you?
> While this may have been what you intended for youself. I don't
> personally recommend that everyone use that approach.
> Take the time to understand the MySQL security model before you put the
> box into production. There are some excellent tutorials on the MySQL web
> site. I also heavily recommend setting up a test box and playing with
> the permissions for a while until you know what you're doing through
> experience.
> Remember, you too can be a statistic.
>
> Ryan Masse wrote:
> >
> > I have just went through this a few hours ago linking the remote mysql
db
> > from within access 2000.
> >
> > First you need to download the odbc driver for mysql:
> > http://www.mysql.com/downloads/api-myodbc.html
> >
> > I encountered a problem on the unix box where it would give me an access
> > denied. I had to add the user as th following;
> >
> > grant all privileges on database.* to user@"%" identified by
'somepasse';
> >
> > then i had to remove all anonymous users from the mysql.user db;
> >
> > delete from mysql.user where User=' '; flush privileges;
> >
> > once i did that i could connect via that user locally on the unix box
and
> > after entering the DSN on the MS box i could connect and read all the
> > records.
> >
> > If you need a more complete description email me.
>
> --
> If a bird in the hand
> is worth two in the bush,
> then what can I get for
> two hands in the bush?
>



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?00de01c0e8ca$56b4c820$fd00a8c0>