Re: [Hampshire] Suggestions for MySQL connectivity

Top Page
Author: Andy Smith
Date:  
To: hampshire
Subject: Re: [Hampshire] Suggestions for MySQL connectivity

Reply to this message
gpg: failed to create temporary file '/var/lib/lurker/.#lk0x56eb0100.hantslug.org.uk.11236': Permission denied
gpg: keyblock resource '/var/lib/lurker/pubring.gpg': Permission denied
gpg: Signature made Tue Jan 22 23:30:20 2013 GMT
gpg: using DSA key 2099B64CBF15490B
gpg: Can't check signature: No public key
Hi Roger,

On Tue, Jan 22, 2013 at 10:06:33PM +0000, Roger Munford wrote:
> The "support" told me that it was a wicked thing to do a huge
> security risk. Not having been involved in software for several
> years, I am willing to believe that it could have become a problem,
> but is it such a risk that nobody will offer direct connections.


If using a shared install of MySQL, i.e. there's one MySQL install
and each customer has a login, then exposing the MySQL port to the
Internet will risk a brute force dictionary attack gaining access to
an account. From there, bad things can occur that affect other
customers.

There is always going to be a compromise between cheaper shared
hosting which is inflexible because it has to serve many people's
needs, versus more expensive dedicated hosting that can be
configured exactly how you would like.

If you have SSH access than as others have mentioned you may be able
to do an SSH tunnel, then the MySQL connection would appear to be
coming from the local host.

Cheers,
Andy

--
http://bitfolk.com/ -- No-nonsense VPS hosting
--
Please post to: Hampshire@???
Web Interface: https://mailman.lug.org.uk/mailman/listinfo/hampshire
LUG URL: http://www.hantslug.org.uk
--------------------------------------------------------------