2.1 Dedicate Machine Running MySQL

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

The attack surface is reduced on a server with only the underlying operating system, MySQL server software, and any security or operational tooling that may be additionally installed. A smaller attack surface reduces the probability of the data within MySQL being compromised.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Remove excess applications or services and/or remove unnecessary roles from the underlying operating system. Impact: Care must be taken that applications or services that are required for the proper operation of the operating system are not removed. Custom applications may need to be modified to accommodate database connections over the network rather than on the use (e.g., using TCP/IP connections). Additional hardware and operating system licenses may be required to make the architectural change.

See Also

https://workbench.cisecurity.org/files/1619