Securich

Darren Cassar (MySQLPreacher)
Tags: mysql, security
Average rating: ***..
(3.00, 2 ratings)

How often do you wonder about the privileges a particular user has on databases, tables and stored procedures? Have you ever thought about which users have access to table ‘passwords’ in ‘livedb’? “Do all my users have a decent password?” and “When was it changed last?” are surely issues DBAs commonly think about, whilst hoping users are not cycling through the usual three passwords to avoid having to remember a new one. Maybe you have occasionally granted full access to all tables in a database to avoid the frustration of having to grant on tables one by one, or wondered about the mess your users and their privileges were in. Did you ever wish you could rename a user ‘paul’’192.168.0.189’ to ’paul’‘192.168.0.188’ or clone user’john’’localhost’ from ’fred’‘127.0.0.1’? Then, perhaps, Securich can come to your rescue. It can easily tackle the above and much more. Securich also enables the absent roles functionality in MySQL, permits dynamic updating of roles and immediate rollout of the changes to each user.

Securich is very simple to install and update using a bash script that includes error catching and rollback in case of problems. Securich is also easy to be remove if required, a single “drop securich” command does the trick and does not change any of the rights granted to users through it.

Securich Features

  • Roles (Dynamic)
  • Password history
  • User cloning
  • Secured user (avoiding password-less accounts)
  • Configurable password complexity – length, uppercase, lowercase, special characters, dictionary check
  • The possibility to revoke privileges from a single table (grant access to all tables in a database but one)
  • User blocking / unblocking
  • Immediate revoking of Privileges and Isolation of User
  • Auditing of privileges granted / revoked
  • Auditing of role updates
  • Reconciliation between MySQL and Securich
Photo of Darren Cassar

Darren Cassar

MySQLPreacher

Darren Cassar is a MySQL community focused engineer, blogging about MySQL-related topics such as HA, replication and security on MySQLPreacher.com. He contributes multiple scripts / projects like `securich` and `crib` helping MySQL DBAs do their job easier. Darren, a Maltese by nationality, loves to travel for both work and pleasure and is currently based in New York.

  • EnterpriseDB
  • Amazon Web Services
  • Clustrix
  • Continuent
  • Facebook
  • HTI Consultoria e Tecnologia
  • Monty Program
  • Percona
  • Rackspace Hosting
  • Schooner Information Technology
  • SkySQL
  • Xeround

Sponsorship Opportunities

For information on exhibition and sponsorship opportunities at the conference, contact Yvonne Romaine at yromaine@oreilly.com

Media Partners Opportunities

For media partnerships, contact mediapartners@ oreilly.com

Press & Media

For media-related inquiries, contact Maureen Jennings at maureen@oreilly.com

O'Reilly MySQL Conference Bulletin

To stay abreast of conference news and to receive email notification when registration opens, please sign up for the O'Reilly MySQL Conference Bulletin (login required).

Contact Us

View a complete list of O'Reilly MySQL Conference Contacts