4.5 Ensure mariadb is Not Started With 'skip-grant-tables'

Information

This option causes mariadbd to start without using the privilege system.

Rationale:

If this option is used, all clients of the affected server will have unrestricted access to all databases.

Solution

Perform the following to establish the recommended state:

Open the MariaDB configuration (e.g., mariadb.cnf) file and set:

skip-grant-tables = FALSE

If there are any occurrences of skip_grant_tables, also set that to FALSE or remove it.

See Also

https://workbench.cisecurity.org/benchmarks/16527

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: 946bab889c115b6248e97a8c81763787f5d991bcac0531212055fb7428b7a78a