Use of default certificates can allow an attacker to impersonate the MySQL server. NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.
Solution
Do not use a default or example certificate. Generate a key specifically for MySQL.