Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- mkdir /etc/mysql/
- openssl rand -hex 16 >> /etc/mysql/keys.txt
- openssl rand -hex 16 >> /etc/mysql/keys.txt
- openssl rand -hex 16 >> /etc/mysql/keys.txt
- vi /etc/mysql/keys.txt // Here I add "1;", "2;" and "3;"
- openssl enc -aes-256-cbc -md sha1 -k MY_PASSWORD_HERE -in /etc/mysql/keys.txt -out /etc/mysql/keys.enc
- vi /etc/my.cnf
- I add these lines :
- [mariadb]
- innodb-encrypt-tables
- innodb-encrypt-log
- innodb-encryption-threads = 4
- plugin-load-add=file_key_management
- file_key_management_filename=/etc/mysql/keys.txt
- file_key_management_encryption_algorithm=AES_CTR
- # for monitoring
- innodb-tablespaces-encryption
- service mysql restart
Add Comment
Please, Sign In to add comment