
{"id":2405,"date":"2018-04-16T13:55:30","date_gmt":"2018-04-16T12:55:30","guid":{"rendered":"http:\/\/dasini.net\/blog\/?p=2405"},"modified":"2019-04-17T10:10:40","modified_gmt":"2019-04-17T09:10:40","slug":"mysql-security-serie-darticles-sur-la-securite-dune-installation-mysql","status":"publish","type":"post","link":"https:\/\/dasini.net\/blog\/2018\/04\/16\/mysql-security-serie-darticles-sur-la-securite-dune-installation-mysql\/","title":{"rendered":"MySQL Security &#8211; S\u00e9rie d&rsquo;articles sur la s\u00e9curit\u00e9 d&rsquo;une installation MySQL"},"content":{"rendered":"<p>J&rsquo;ai publi\u00e9, sur la <a href=\"http:\/\/dasini.net\/blog\/en\/\" target=\"_blank\" rel=\"noopener noreferrer\">version anglaise<\/a> du site, une s\u00e9rie modestement intitul\u00e9e \u00ab\u00a0<strong>MySQL Security<\/strong>\u00a0\u00bb compos\u00e9e de 8 articles, dont le sujet principal est&#8230; la s\u00e9curit\u00e9 \ud83d\ude42<\/p>\n<p>Pour \u00eatre plus pr\u00e9cis, n&rsquo;\u00e9tant pas un expert en s\u00e9curit\u00e9, cette s\u00e9rie ne traite pas de <strong>LA<\/strong> s\u00e9curit\u00e9 dans son ensemble. Au contraire, je me suis concentr\u00e9 sur quelques-un des plugins et autres fonctionnalit\u00e9s de MySQL \u00e0 conna\u00eetre pour augmenter la s\u00e9curit\u00e9 globale de ton syst\u00e8me de donn\u00e9es.<\/p>\n<p>On a donc:<\/p>\n<ol>\n<li><a href=\"http:\/\/dasini.net\/blog\/2018\/03\/01\/mysql-security-password-validation-plugin\/\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Password Validation Plugin<\/strong><\/a> : Renforcer la robustesse des mots de passe.<\/li>\n<li><a href=\"http:\/\/dasini.net\/blog\/2018\/03\/07\/mysql-security-password-management\/\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Password Management<\/strong><\/a>\u00a0: G\u00e9rer la politique de renouvellement des mots de passe.<\/li>\n<li><a href=\"http:\/\/dasini.net\/blog\/2018\/03\/14\/mysql-security-user-account-locking\/\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>User Account Locking<\/strong><\/a>\u00a0: Configurer une strat\u00e9gie de verrouillage des comptes utilisateur.<\/li>\n<li><a href=\"http:\/\/dasini.net\/blog\/2018\/03\/29\/mysql-security-the-connection-control-plugins\/\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>The Connection-Control Plugins<\/strong><\/a>\u00a0: Att\u00e9nuer les effets d&rsquo;une attaque par force brute.<\/li>\n<li><a href=\"http:\/\/dasini.net\/blog\/2018\/04\/04\/mysql-security-mysql-enterprise-audit\/\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Enterprise Audit<\/strong><\/a>\u00a0: Audit de la base de donn\u00e9es afin de d\u00e9tecter une mauvaise utilisation et\/ou de se conformer \u00e0 la r\u00e9glementation.<\/li>\n<li><a href=\"http:\/\/dasini.net\/blog\/2018\/04\/10\/mysql-security-mysql-enterprise-transparent-data-encryption\/\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Enterprise Transparent Data Encryption<\/strong> (<strong>TDE<\/strong>)<\/a>\u00a0: Chiffrement des donn\u00e9es pour prot\u00e9ger la confidentialit\u00e9 de vos clients. Transparent pour l&rsquo;application.<\/li>\n<li><a href=\"http:\/\/dasini.net\/blog\/2018\/04\/16\/mysql-security-mysql-enterprise-firewall\/\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Enterprise Firewall<\/strong><\/a>\u00a0: Pare-feu temps r\u00e9el base de donn\u00e9es, qui bloque les\u00a0activit\u00e9s non autoris\u00e9es.<\/li>\n<li><a href=\"http:\/\/dasini.net\/blog\/2019\/03\/19\/mysql-security-mysql-enterprise-data-masking-and-de-identification\/\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Enterprise Data Masking and De-Identification<\/strong><\/a> : Anonymisation et obfuscation de donn\u00e9es.<\/li>\n<\/ol>\n<p>\u00a0<\/p>\n<p>De plus, pour approfondir le sujet je t&rsquo;encourage vivement \u00e0 parcourir les liens suivants:<\/p>\n<ul>\n<li><a href=\"https:\/\/dev.mysql.com\/doc\/mysql-security-excerpt\/8.0\/en\/\" target=\"_blank\" rel=\"noopener noreferrer\">Security in MySQL<\/a><\/li>\n<li><a href=\"https:\/\/dev.mysql.com\/doc\/mysql-secure-deployment-guide\/8.0\/en\/\" target=\"_blank\" rel=\"noopener noreferrer\">MySQL 8.0 Secure Deployment Guide<\/a><\/li>\n<li><a href=\"https:\/\/dev.mysql.com\/doc\/refman\/8.0\/en\/security.html\" target=\"_blank\" rel=\"noopener noreferrer\">MySQL 8.0 Reference Manual &#8211; Security<\/a><\/li>\n<\/ul>\n<p>\u00a0<\/p>\n<p>Thanks for using MySQL!<\/p>\n<p><a href=\"https:\/\/twitter.com\/freshdaz\" target=\"_blank\" rel=\"noopener noreferrer\">Follow me on twitter<\/a><\/p>\n<p>\u00a0<\/p>\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>J&rsquo;ai publi\u00e9, sur la version anglaise du site, une s\u00e9rie modestement intitul\u00e9e \u00ab\u00a0MySQL Security\u00a0\u00bb compos\u00e9e de 7 articles, dont le sujet principal est&#8230; la s\u00e9curit\u00e9 \ud83d\ude42<br \/>\nPour \u00eatre plus pr\u00e9cis, n&rsquo;\u00e9tant pas un expert en s\u00e9curit\u00e9, cette s\u00e9rie ne traite pas de LA s\u00e9curit\u00e9 dans son ensemble. Au contraire, je me suis concentr\u00e9 sur quelques-un des plugins et autres fonctionnalit\u00e9s de MySQL \u00e0 conna\u00eetre pour augmenter la s\u00e9curit\u00e9 globale de ton syst\u00e8me de donn\u00e9es.<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"footnotes":""},"categories":[8,391],"tags":[397,399,393,395,28,401,314],"class_list":["post-2405","post","type-post","status-publish","format-standard","hentry","category-mysql","category-securite","tag-audit-fr","tag-firewall-fr","tag-gdpr","tag-rgpd","tag-securite","tag-security-fr","tag-tde"],"aioseo_notices":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p9LfWW-CN","jetpack-related-posts":[{"id":2959,"url":"https:\/\/dasini.net\/blog\/2019\/04\/08\/200\/","url_meta":{"origin":2405,"position":0},"title":"200 !!","author":"Olivier DASINI","date":"8 avril 2019","format":false,"excerpt":"Cet article est en fait mon 200 \u00e8me \\o\/ Pour marquer le coup, j'ai d\u00e9cid\u00e9 de faire une petite pause et de regarder dans le r\u00e9troviseur...","rel":"","context":"Dans &quot;Divers&quot;","block_context":{"text":"Divers","link":"https:\/\/dasini.net\/blog\/category\/divers\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":76,"url":"https:\/\/dasini.net\/blog\/2008\/11\/11\/hash-securite-mysql\/","url_meta":{"origin":2405,"position":1},"title":"Hash, s\u00e9curit\u00e9 &#038; MySQL","author":"Olivier DASINI","date":"11 novembre 2008","format":false,"excerpt":"Une fonction de hash est une fonction qui prend une cha\u00eene de caract\u00e8res en entr\u00e9e et qui renvoi une autre chaine de caract\u00e8res. La cha\u00eene de caract\u00e8res r\u00e9sultat a toujours la m\u00eame longueur et est strictement identique pour une m\u00eame entr\u00e9e. Une des utilisations du hashage sert a masquer les\u2026","rel":"","context":"Dans &quot;MySQL&quot;","block_context":{"text":"MySQL","link":"https:\/\/dasini.net\/blog\/category\/mysql\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":3780,"url":"https:\/\/dasini.net\/blog\/2020\/10\/01\/presentation-de-mysql-enterprise-edition\/","url_meta":{"origin":2405,"position":2},"title":"Pr\u00e9sentation de MySQL Enterprise Edition","author":"Olivier DASINI","date":"1 octobre 2020","format":false,"excerpt":"MySQL Enterprise Edition, c'est un ensemble de fonctionnalit\u00e9s avanc\u00e9es, d'outils et de services dont le but est de vous permettre de passer moins de temps sur les probl\u00e8mes de gestions des donn\u00e9es, de performances et de s\u00e9curit\u00e9s, afin de pouvoir vous consacrer \u00e0 vos probl\u00e9matiques m\u00e9tiers.","rel":"","context":"Dans &quot;MySQL&quot;","block_context":{"text":"MySQL","link":"https:\/\/dasini.net\/blog\/category\/mysql\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/img.youtube.com\/vi\/CtRIc6Hsia8\/0.jpg?resize=350%2C200","width":350,"height":200},"classes":[]},{"id":6356,"url":"https:\/\/dasini.net\/blog\/2022\/09\/19\/webinar-les-avantages-de-mysql-enterprise-edition\/","url_meta":{"origin":2405,"position":3},"title":"Webinar \u2013 Les avantages de MySQL Enterprise Edition","author":"Olivier DASINI","date":"19 septembre 2022","format":false,"excerpt":"Votre entreprise utilise-t-elle MySQL ? Si oui, ce webinaire est pour vous ! Dans un monde o\u00f9 le piratage et le vol de donn\u00e9es font l'actualit\u00e9 quotidienne, il est devenu vital de s'assurer que les donn\u00e9es de vos clients et celles de vos employ\u00e9s sont prot\u00e9g\u00e9es par les plus hauts\u2026","rel":"","context":"Dans &quot;Conf\u00e9rence&quot;","block_context":{"text":"Conf\u00e9rence","link":"https:\/\/dasini.net\/blog\/category\/conference\/"},"img":{"alt_text":"Webinaire - Les avantages de MySQL Enterprise Edition","src":"https:\/\/i0.wp.com\/dasini.net\/blog\/wp-content\/uploads\/2022\/09\/MySQL-Enterprise-Edition.png?fit=1200%2C635&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/dasini.net\/blog\/wp-content\/uploads\/2022\/09\/MySQL-Enterprise-Edition.png?fit=1200%2C635&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/dasini.net\/blog\/wp-content\/uploads\/2022\/09\/MySQL-Enterprise-Edition.png?fit=1200%2C635&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/dasini.net\/blog\/wp-content\/uploads\/2022\/09\/MySQL-Enterprise-Edition.png?fit=1200%2C635&ssl=1&resize=700%2C400 2x, https:\/\/i0.wp.com\/dasini.net\/blog\/wp-content\/uploads\/2022\/09\/MySQL-Enterprise-Edition.png?fit=1200%2C635&ssl=1&resize=1050%2C600 3x"},"classes":[]},{"id":26,"url":"https:\/\/dasini.net\/blog\/2008\/10\/29\/mysql-50-un-sgbdr-mature-part-34\/","url_meta":{"origin":2405,"position":4},"title":"MySQL 5.0 : Un SGBDR mature ? &#8212; (part 3\/4)","author":"Olivier DASINI","date":"29 octobre 2008","format":false,"excerpt":"Les proc\u00e9dures stock\u00e9es sont des listes de commandes qui peuvent \u00eatre compil\u00e9es et stock\u00e9es sur le serveur. Elles permettent de d\u00e9placer une partie de la logique m\u00e9tier d'une application de base de donn\u00e9es du client vers le serveur. Les clients n\u2019ont plus besoin de soumettre \u00e0 nouveau toute la commande,\u2026","rel":"","context":"Dans &quot;MySQL&quot;","block_context":{"text":"MySQL","link":"https:\/\/dasini.net\/blog\/category\/mysql\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":2731,"url":"https:\/\/dasini.net\/blog\/2018\/11\/23\/slides-du-mysql-day-paris-2018-nosql-sql-mysql\/","url_meta":{"origin":2405,"position":5},"title":"Slides du MySQL Day Paris 2018 \u2013 NoSQL + SQL = MySQL","author":"Olivier DASINI","date":"23 novembre 2018","format":false,"excerpt":"Au nom de toute l'\u00e9quipe MySQL, je souhaite vous remercier pour votre pr\u00e9sence ! On a certes d\u00fb un peu pousser les murs (sorry for that), mais finalement cela n'a fait que contribuer \u00e0 rendre l'\u00e9v\u00e9nement encore plus convivial :) Et voici les slides:","rel":"","context":"Dans &quot;audit&quot;","block_context":{"text":"audit","link":"https:\/\/dasini.net\/blog\/category\/audit\/"},"img":{"alt_text":"MySQL 8 is Great","src":"https:\/\/i0.wp.com\/pbs.twimg.com\/media\/DsmMn7HXcAApacW.jpg?resize=350%2C200&ssl=1","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/pbs.twimg.com\/media\/DsmMn7HXcAApacW.jpg?resize=350%2C200&ssl=1 1x, https:\/\/i0.wp.com\/pbs.twimg.com\/media\/DsmMn7HXcAApacW.jpg?resize=525%2C300&ssl=1 1.5x"},"classes":[]}],"jetpack_likes_enabled":true,"_links":{"self":[{"href":"https:\/\/dasini.net\/blog\/wp-json\/wp\/v2\/posts\/2405","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dasini.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dasini.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dasini.net\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/dasini.net\/blog\/wp-json\/wp\/v2\/comments?post=2405"}],"version-history":[{"count":11,"href":"https:\/\/dasini.net\/blog\/wp-json\/wp\/v2\/posts\/2405\/revisions"}],"predecessor-version":[{"id":3029,"href":"https:\/\/dasini.net\/blog\/wp-json\/wp\/v2\/posts\/2405\/revisions\/3029"}],"wp:attachment":[{"href":"https:\/\/dasini.net\/blog\/wp-json\/wp\/v2\/media?parent=2405"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dasini.net\/blog\/wp-json\/wp\/v2\/categories?post=2405"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dasini.net\/blog\/wp-json\/wp\/v2\/tags?post=2405"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}