Skip to main content

Unauthorized Remote MySQL Accesss

Comments

6 comments

  • cPanelMichael
    Hello, Users can authorize remote IP addresses to MySQL via the following option in cPanel: Remote MySQL - Documentation - cPanel Documentation Is it possible an existing user authorized an IP address to the databases associated with their account? Thank you.
    0
  • dave_83
    Hello, Users can authorize remote IP addresses to MySQL via the following option in cPanel:
    0
  • cPanelMichael
    Hello, You'd have to enable additional MySQL logging functionality to track MySQL access, as referenced in your other thread at: Is there a way to see remote mysql connections? You could also review /usr/local/cpanel/logs/access_log to see if any other IP addresses accessed cPanel for the account. Thank you.
    0
  • dave_83
    That solves the mystery. It looks like I actually added those IPs, it's a bit odd because I don't recall adding any Amazon aws connections... but the host adding url was executed from my IP, and based on the user agent I can say that it was most likely my computer. I also checked my firewall and there was no RPD connection that day. I did find a lot of other IPs trying to login to cpanel. What is the best way to secure my cpanel installation? is there a guide that would walk me through the best practices?
    0
  • Infopro
    The cPanel documentation is a good place to start: Recommended Security Settings - cPanel Knowledge Base - cPanel Documentation
    0
  • cPanelMichael
    I did find a lot of other IPs trying to login to cpanel. What is the best way to secure my cpanel installation? is there a guide that would walk me through the best practices?

    You could also use Host Access Control to allow your IP address or IP address range and deny all other access attempts to services such as cPanel/WHM if you are the only person accessing cPanel on the system. Information on how to complete this is available at: Host Access Control - Documentation - cPanel Documentation Thank you.
    0

Please sign in to leave a comment.