canmove, Confirmed users
345
edits
(Move "Administrative Questions" in.) |
No edit summary |
||
Line 347: | Line 347: | ||
9. Change to the new Bugzilla directory and run <code>checksetup.pl</code>. Everything at this point works exactly like the normal "Upgrading" or "Configuration" sections from the [http://www.bugzilla.org/docs/ Bugzilla Guide]. | 9. Change to the new Bugzilla directory and run <code>checksetup.pl</code>. Everything at this point works exactly like the normal "Upgrading" or "Configuration" sections from the [http://www.bugzilla.org/docs/ Bugzilla Guide]. | ||
=Bugzilla Security= | |||
== How do I completely disable MySQL security if it's giving me problems? (I've followed the instructions in the installation section of this guide...)== | |||
Run MySQL like this: '''mysqld --skip-grant-tables'''. | |||
Please remember that this makes MySQL as secure as | |||
taping a $100 to the floor of a football stadium bathroom for safekeeping. | |||
* '''This can't be stressed enough.''' Doing this is a bad idea. Please consult [http://www.bugzilla.org/docs/tip/html/security-mysql.html Section 4.2] of this guide and the MySQL documentation for better solutions. | |||
==Are there any security problems with Bugzilla?== | |||
The Bugzilla code has undergone a reasonably complete security audit, | |||
and user-facing CGIs run under Perl's taint mode. | |||
However, it is recommended that you closely examine permissions | |||
on your Bugzilla installation, | |||
and follow the recommended security guidelines found in The Bugzilla Guide. | |||