2.1.2 Verify Backups are Good | CIS MySQL 8.0 Enterprise Linux OS L1 v1.4.0 | Unix | CONTINGENCY PLANNING |
2.1.3 Secure Backup Credentials | CIS MySQL 5.7 Community Windows OS L1 v2.0.0 | Windows | ACCESS CONTROL, CONTINGENCY PLANNING, MEDIA PROTECTION, SYSTEM AND COMMUNICATIONS PROTECTION |
2.1.4 The Backups Should be Properly Secured | CIS MySQL 5.7 Community Windows OS L1 v2.0.0 | Windows | CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION |
2.1.4 The Backups Should be Properly Secured | CIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0 | Windows | CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION |
2.1.6 Disaster Recovery (DR) Plan | CIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0 | Windows | CONTINGENCY PLANNING |
2.1.7 Backup of Configuration and Related Files | CIS MySQL 5.7 Community Windows OS L1 v2.0.0 | Windows | CONTINGENCY PLANNING |
2.2 Dedicate the Machine Running MySQL | CIS MySQL 5.7 Community Linux OS L1 v2.0.0 | Unix | SYSTEM AND COMMUNICATIONS PROTECTION |
2.2 Ensure 'Protect RE' Firewall Filter includes explicit terms for all Management Services | CIS Juniper OS Benchmark v2.1.0 L2 | Juniper | CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION |
2.2.1 Ensure Binary and Relay Logs are Encrypted | CIS Oracle MySQL Enterprise Edition 8.4 v1.0.0 L2 MySQL RDBMS | MySQLDB | IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
2.2.1 Ensure Binary and Relay Logs are Encrypted | CIS Oracle MySQL Community Server 8.4 v1.0.0 L2 Database | MySQLDB | IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
2.3 Do Not Specify Passwords in Command Line | CIS MySQL 5.7 Enterprise Linux OS L1 v2.0.0 | Unix | ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
2.10 Use Dual Passwords to Enable Higher Frequency Password Rotation | CIS Oracle MySQL Enterprise Edition 8.4 v1.0.0 L2 MySQL RDBMS | MySQLDB | IDENTIFICATION AND AUTHENTICATION |
2.11 Lock Out Accounts if Not Currently in Use | CIS Oracle MySQL Enterprise Edition 8.4 v1.0.0 L2 MySQL RDBMS | MySQLDB | ACCESS CONTROL |
2.12 Ensure AES Encryption Mode for AES_ENCRYPT/AES_DECRYPT is Configured Correctly | CIS Oracle MySQL Enterprise Edition 8.4 v1.0.0 L2 MySQL RDBMS | MySQLDB | SYSTEM AND SERVICES ACQUISITION |
2.16 Require Client-Side Certificates (X.509) | CIS Oracle MySQL Enterprise Edition 8.4 v1.0.0 L2 MySQL RDBMS | MySQLDB | ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
3.7 Ensure SSL Key Files Have Appropriate Permissions | CIS MySQL 8.0 Community Linux OS L1 v1.1.0 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
4.5 Ensure 'mysqld' is Not Started With '--skip-grant-tables' | CIS MySQL 8.0 Enterprise Linux OS L1 v1.4.0 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
4.5 Ensure 'mysqld' is Not Started with '--skip-grant-tables' - /etc/my.cnf | CIS MySQL 5.7 Community Linux OS L1 v2.0.0 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
4.5 Ensure 'mysqld' is Not Started With '--skip-grant-tables' - /etc/my.cnf | CIS MySQL 5.7 Enterprise Linux OS L1 v2.0.0 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
4.5 Ensure 'mysqld' is Not Started With '--skip-grant-tables' - /etc/mysql/my.cnf | CIS MySQL 5.7 Enterprise Linux OS L1 v2.0.0 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
4.5 Ensure 'mysqld' is Not Started With '--skip-grant-tables' - %PROGRAMDATA%\MySQL\MySQL Server 5.7\my.cnf | CIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0 | Windows | ACCESS CONTROL, MEDIA PROTECTION |
4.5 Ensure 'mysqld' is Not Started with '--skip-grant-tables' - mysqld process | CIS MySQL 5.6 Enterprise Linux OS L1 v2.0.0 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
4.5 Ensure 'mysqld' is Not Started with '--skip-grant-tables' - SYSCONFDIR/my.cnf | CIS MySQL 5.6 Enterprise Linux OS L1 v2.0.0 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
4.9 Ensure 'sql_mode' Contains 'STRICT_ALL_TABLES' | CIS Oracle MySQL Enterprise Edition 8.4 v1.0.0 L2 MySQL RDBMS | MySQLDB | PLANNING, SYSTEM AND SERVICES ACQUISITION |
6.4 Ensure 'log-raw' is Set to 'OFF' | CIS MySQL 8.0 Community Linux OS L1 v1.1.0 | Unix | MEDIA PROTECTION |
6.4 Ensure 'log-raw' is Set to 'OFF' - /etc/my.cnf | CIS MySQL 5.7 Enterprise Linux OS L1 v2.0.0 | Unix | MEDIA PROTECTION |
6.4 Ensure 'log-raw' is Set to 'OFF' - /etc/mysql/my.cnf | CIS MySQL 5.7 Community Linux OS L1 v2.0.0 | Unix | MEDIA PROTECTION |
6.4 Ensure 'log-raw' is Set to 'OFF' - /etc/mysql/my.cnf | CIS MySQL 5.7 Enterprise Linux OS L1 v2.0.0 | Unix | MEDIA PROTECTION |
6.4 Ensure 'log-raw' is Set to 'OFF' - C:\my.cnf | CIS MySQL 5.7 Community Windows OS L1 v2.0.0 | Windows | MEDIA PROTECTION |
6.4 Ensure 'log-raw' is Set to 'OFF' - C:\my.cnf | CIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0 | Windows | MEDIA PROTECTION |
6.4 Ensure 'log-raw' is Set to 'OFF' - C:\my.ini | CIS MySQL 5.7 Community Windows OS L1 v2.0.0 | Windows | MEDIA PROTECTION |
6.4 Ensure 'log-raw' is Set to 'OFF' - C:\my.ini | CIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0 | Windows | MEDIA PROTECTION |
6.4 Ensure 'log-raw' is Set to 'OFF' - MYSQL_INSTALL\my.cnf | CIS MySQL 5.7 Community Windows OS L1 v2.0.0 | Windows | MEDIA PROTECTION |
6.4 Ensure 'log-raw' is Set to 'OFF' - MYSQL_INSTALL\my.ini | CIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0 | Windows | MEDIA PROTECTION |
6.4 Ensure 'log-raw' Is Set to 'OFF' - SYSCONFDIR/my.cnf | CIS MySQL 5.6 Enterprise Linux OS L1 v2.0.0 | Unix | MEDIA PROTECTION |
6.4 Ensure 'log-raw' is Set to 'OFF' - SYSCONFDIRmy.cnf | CIS MySQL 5.7 Enterprise Linux OS L1 v2.0.0 | Unix | MEDIA PROTECTION |
6.7 Set audit_log_strategy to SYNCHRONOUS or SEMISYNCRONOUS | CIS Oracle MySQL Enterprise Edition 8.4 v1.0.0 L2 MySQL RDBMS | MySQLDB | AUDIT AND ACCOUNTABILITY |
7.2 Ensure Passwords are Not Stored in the Global Configuration | CIS MySQL 8.0 Community Linux OS L1 v1.1.0 | Unix | IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
7.2 Ensure Passwords are Not Stored in the Global Configuration | CIS MySQL 8.0 Enterprise Linux OS L1 v1.4.0 | Unix | IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
7.2 Ensure Passwords are Not Stored in the Global Configuration - /etc/my.cnf | CIS MySQL 5.7 Enterprise Linux OS L1 v2.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
7.2 Ensure Passwords are Not Stored in the Global Configuration - %PROGRAMDATA%\MySQL\MySQL Server 5.7\my.ini | CIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0 | Windows | IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
7.2 Ensure Passwords are Not Stored in the Global Configuration - MYSQL_INSTALL\my.cnf | CIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0 | Windows | IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
7.2 Ensure Passwords are Not Stored in the Global Configuration - MYSQL_INSTALL\my.ini | CIS MySQL 5.7 Community Windows OS L1 v2.0.0 | Windows | IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
7.3 Ensure 'sql_mode' Contains 'NO_AUTO_CREATE_USER' - %WINDIR%\my.ini | CIS MySQL 5.7 Community Windows OS L1 v2.0.0 | Windows | PLANNING, SYSTEM AND SERVICES ACQUISITION |
7.3 Ensure 'sql_mode' Contains 'NO_AUTO_CREATE_USER' - C:\my.ini | CIS MySQL 5.7 Community Windows OS L1 v2.0.0 | Windows | PLANNING, SYSTEM AND SERVICES ACQUISITION |
7.3 Ensure 'sql_mode' Contains 'NO_AUTO_CREATE_USER' - NO_AUTO_CREATE_USER -C:\my.ini | CIS MySQL 5.7 Community Windows OS L1 v2.0.0 | Windows | PLANNING, SYSTEM AND SERVICES ACQUISITION |
7.3 Ensure 'sql_mode' Contains 'NO_AUTO_CREATE_USER' - NO_AUTO_CREATE_USER -C:\my.ini | CIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0 | Windows | PLANNING, SYSTEM AND SERVICES ACQUISITION |
7.3 Ensure 'sql_mode' Contains 'NO_AUTO_CREATE_USER' - SYSCONFDIR/my.cnf | CIS MySQL 5.7 Community Linux OS L1 v2.0.0 | Unix | PLANNING, SYSTEM AND SERVICES ACQUISITION |
9.1 Ensure Replication Traffic is Secured | CIS MySQL 5.7 Community Linux OS L1 v2.0.0 | Unix | ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
9.3 Ensure 'master_info_repository' is Set to 'TABLE' | CIS Oracle MySQL Enterprise Edition 8.4 v1.0.0 L2 MySQL RDBMS | MySQLDB | CONFIGURATION MANAGEMENT |