POSTGRESQL DATABASES SECURITY CONFIGURATION CHECKLIST

Authors

  • Rinalds Gudriks Rezekne Academy of Technologies (LV)
  • Sergejs Kodors Rezekne Academy of Technologies (LV)

DOI:

https://doi.org/10.17770/het2019.23.4386

Keywords:

PostgreSQL, configuration checklist, databases, security, vulnerabilities

Abstract

The paper provides PostgreSQL configuration checklist to make databases safer. The main part describes with examples about vulnerabilities and how to solve them.

Downloads

Download data is not yet available.

References

What is PostgreSQL? [Tiešsaiste]Pieejams: https://www.postgresql.org/about/ [Piekļuve: 15.04.2019.]

Why use PostgreSQL? [Tiešsaiste]Pieejams: https://www.postgresql.org/about/ [Piekļuve: 15.04.2019.]

How to Secure PostgreSQL Database [Tiešsaiste]Pieejams: https://severalnines.com/blog/how-secure-your-postgresql-database-10-tips [Piekļuve: 15.04.2019.]

OWASP Backend Security Project PostgreSQL Hardening [Tiešsaiste]Pieejams: https://www.owasp.org/index.php/OWASP_Backend_Security_Project_PostgreSQL_Hardening [Piekļuve: 15.04.2019.]

Security Best Practises for Postgres [Tiešsaiste]Pieejams: https://info.enterprisedb.com/rs/069-ALB-339/images/security-best-practices-for-postgres.pdf?_ga=2.214934679.1028117103.1555331894-483784908.1552467399 [Piekļuve: 15.04.2019.]

The pg_hba.conf File [Tiešsaiste]Pieejams: https://www.postgresql.org/docs/9.6/auth-pg-hba-conf.html [Piekļuve: 15.04.2019.]

Secure TCP/IP Connection with SSL [Tiešsaiste]Pieejams: https://www.postgresql.org/docs/9.6/ssl-tcp.html [Piekļuve: 15.04.2019.]

pgcrypto [Tiešsaiste]Pieejams: https://www.postgresql.org/docs/current/pgcrypto.html [Piekļuve: 15.04.2019.]

Encription data with pgcrypto [Tiešsaiste]Pieejams: http://www.postgresonline.com/journal/archives/165-Encrypting-data-with-pgcrypto.html [Piekļuve: 15.04.2019.]

Row Security Policies [Tiešsaiste]Pieejams: https://www.postgresql.org/docs/9.6/ddl-rowsecurity.html [Piekļuve: 15.04.2019.]

Downloads

Published

2019-04-24

Issue

Section

Information Technologies

How to Cite

[1]
R. Gudriks and S. Kodors, “POSTGRESQL DATABASES SECURITY CONFIGURATION CHECKLIST”, HET, no. 23, pp. 38–42, Apr. 2019, doi: 10.17770/het2019.23.4386.