在CentOS系统中设置MySQL的安全性的方法如下:
准备工作:
确保系统是最新的:
sudo yum update
添加MySQL Yum仓库:
sudo wget https://dev.mysql.com/get/mysql80-community-release-el7-3.noarch.rpms
sudo rpm -Uvh mysql80-community-release-el7-3.noarch.rpm
安装MySQL服务器:
sudo yum install mysql-community-server -y
启动MySQL服务:
sudo systemctl start mysqld
sudo systemctl enable mysqld
查看初始密码:
sudo grep 'temporary password' /var/log/mysqld.log
修改初始密码:
使用临时密码登录MySQL:
mysql -u root -p
修改临时密码:
ALTER USER 'root'@'localhost' IDENTIFIED BY 'YourStrongPassword';
配置防火墙:
sudo firewall-cmd --permanent --add-port=3306/tcp
sudo firewall-cmd --reload
运行安全脚本:
mysql_secure_installation
脚本进行安全配置,例如设置root密码、删除匿名用户、禁用root远程登录等:sudo mysql_secure_installation
创建新用户并授权:
CREATE DATABASE mydatabase;
CREATE USER 'myuser'@'localhost' IDENTIFIED BY 'mypassword';
GRANT ALL PRIVILEGES ON mydatabase.* TO 'myuser'@'localhost';
FLUSH PRIVILEGES;
限制远程访问:
/etc/my.cnf
或 /etc/mysql/my.cnf
),将 bind-address
设置为 127.0.0.1
以限制为本地连接:[mysqld]
bind-address = 127.0.0.1
启用审计日志(可选):
定期更新和打补丁:
sudo yum update
通过以上步骤,你可以提高CentOS上MySQL的安全性。