CIS MySQL 4.1/5.1 OS L1 v1.0.2

Warning! Audit Deprecated

This audit file has been deprecated and will be removed in a future update.

View Next Version

Audit Details

Name: CIS MySQL 4.1/5.1 OS L1 v1.0.2

Updated: 4/2/2021

Authority: CIS

Plugin: Unix

Revision: 1.24

Estimated Item Count: 46

Audit Items

DescriptionCategories
1.3 Unix Run in Chroot
1.3 Unix Run in Chroot - @SYSCONFDIR@/my.cnf

SYSTEM AND COMMUNICATIONS PROTECTION

1.3 Unix Run in Chroot - /etc/my.cnf

SYSTEM AND COMMUNICATIONS PROTECTION

1.3 Unix Run in Chroot - /etc/mysql/my.cnf

SYSTEM AND COMMUNICATIONS PROTECTION

1.4 Dedicated Account

ACCESS CONTROL

1.7 Command history - .mysql_history

CONFIGURATION MANAGEMENT

1.7 Command history - ~/.mysql_history

CONFIGURATION MANAGEMENT

1.8 MYSQL_PWD

IDENTIFICATION AND AUTHENTICATION

1.8 MYSQL_PWD - .bash_profile

IDENTIFICATION AND AUTHENTICATION

1.8 MYSQL_PWD - .bashrc

IDENTIFICATION AND AUTHENTICATION

1.8 MYSQL_PWD - .profile

IDENTIFICATION AND AUTHENTICATION

1.9 MySQL User

ACCESS CONTROL

1.10 Windows Network Service Account
1.11 Windows Platform Selection
2.1 Data Directory

CONFIGURATION MANAGEMENT

2.2 Binaries 'mysql'

CONFIGURATION MANAGEMENT

2.2 Binaries 'mysqladmin'

CONFIGURATION MANAGEMENT

2.2 Binaries 'mysqld'

CONFIGURATION MANAGEMENT

2.3 Configuration File
2.3 Configuration File - @SYSCONFDIR@/my.cnf

CONFIGURATION MANAGEMENT

2.3 Configuration File - /etc/my.cnf

CONFIGURATION MANAGEMENT

2.3 Configuration File - /etc/mysql/my.cnf

CONFIGURATION MANAGEMENT

2.4 Log files

CONFIGURATION MANAGEMENT

2.5 SSL files 'ssl_ca'

CONFIGURATION MANAGEMENT

2.5 SSL files 'ssl_cert'

CONFIGURATION MANAGEMENT

2.5 SSL files 'ssl_key'

CONFIGURATION MANAGEMENT

3.2 Logs not on system partition
3.2 Logs not on system partition - '@SYSCONFDIR@/my.cnf log-bin = /var or /var/log'

SYSTEM AND COMMUNICATIONS PROTECTION

3.2 Logs not on system partition - '/etc/my.cnf log-bin = /var or /var/log'

SYSTEM AND COMMUNICATIONS PROTECTION

3.2 Logs not on system partition - '/etc/mysql/my.cnf log-bin = /var or /var/log'

SYSTEM AND COMMUNICATIONS PROTECTION

3.2 Logs not on system partition - 'log partition exists'

AUDIT AND ACCOUNTABILITY

3.3 Logs not on database partition
3.3 Logs not on database partition - log file location - @SYSCONFDIR@/my.cnf

SYSTEM AND COMMUNICATIONS PROTECTION

3.3 Logs not on database partition - log file location - /etc/my.cnf

SYSTEM AND COMMUNICATIONS PROTECTION

3.3 Logs not on database partition - log file location - /etc/mysql/my.cnf

SYSTEM AND COMMUNICATIONS PROTECTION

3.4 Do not use Update log - 'log-update does not exist'
3.4 Do not use Update log - 'log-update does not exist' - @SYSCONFDIR@/my.cnf

CONFIGURATION MANAGEMENT

3.4 Do not use Update log - 'log-update does not exist' - /etc/my.cnf

CONFIGURATION MANAGEMENT

3.4 Do not use Update log - 'log-update does not exist' - /etc/mysql/my.cnf

CONFIGURATION MANAGEMENT

6.1 Suspicious UDFs

CONFIGURATION MANAGEMENT

7.1 Client Verify Server Cert 'ssl_verify_server_cert'

IDENTIFICATION AND AUTHENTICATION

7.3 Unique Key/Cert
8.1 Backup of databases
8.2 Verify backups
8.3 Replication slave backups
MySQL 4.1, 5.0, 5.1 Community Editions is installed