[6425] in bugtraq
Re: mysql: MySQL Security
daemon@ATHENA.MIT.EDU (Michael Widenius)
Tue Mar 31 15:31:44 1998
Date: Tue, 31 Mar 1998 21:25:23 +0200
Reply-To: monty@analytikerna.se
From: Michael Widenius <monty@ANALYTIK.ANALYTIKERNA.SE>
X-To: Ben Laurie <ben@algroup.co.uk>
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To: <35213E6F.27660F0A@algroup.co.uk>
>>>>> "Ben" == Ben Laurie <ben@algroup.co.uk> writes:
<cut>
Ben> b) if you've set the port <1024, so it gets filtered naturally by your
Ben> firewall, you have to run as root. The following patch fixes this
Ben> problem (on FreeBSD at least), if you add "MYSQL_USER=someuser; export
Ben> MYSQL_USER" to safe_mysqld.
Ben> Only lightly tested...
<cut>
Thanks for the patch! I have added this to MySQL 3.22, with the small
change that one should use mysqld --user=someuser instead of a
environment variable.
Yours,
Monty