6.4 Ensure 'log-raw' Is Set to 'OFF' - /etc/my.cnf

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

With raw logging of passwords enabled someone with access to the log files might see plain text passwords.

Solution

Perform the following actions to remediate this setting: Open the MySQL configuration file (my.cnf) Find the log-raw entry and set it as follows log-raw = OFF

See Also

https://workbench.cisecurity.org/files/1619