Skip to content

The MySQL Database Server 8.0 must initiate session auditing upon startup.

An XCCDF Rule

Description

<VulnDiscussion>Session auditing is for use when a user's activities are under investigation. To be sure of capturing all activity during those periods when session auditing is in use, it needs to be in operation for the whole time the Database Management System (DBMS) is running.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>

ID
SV-235159r960888_rule
Severity
Medium
References
Updated



Remediation - Manual Procedure

Configure the MySQL Audit to automatically start during system startup.  
Add to the my.cnf: 

[mysqld]
plugin-load-add=audit_log.so
audit-log=FORCE_PLUS_PERMANENT