103 lines
4.3 KiB
Plaintext
103 lines
4.3 KiB
Plaintext
include/master-slave.inc
|
|
Warnings:
|
|
Note #### Sending passwords in plain text without SSL/TLS is extremely insecure.
|
|
Note #### Storing MySQL user name or password information in the master info repository is not secure and is therefore not recommended. Please consider using the USER and PASSWORD connection options for START SLAVE; see the 'START SLAVE Syntax' in the MySQL Manual for more information.
|
|
[connection master]
|
|
SET SQL_LOG_BIN= 0;
|
|
create user replssl@localhost require ssl;
|
|
grant replication slave on *.* to replssl@localhost;
|
|
SET SQL_LOG_BIN= 1;
|
|
create table t1 (t int);
|
|
include/sync_slave_sql_with_master.inc
|
|
stop slave;
|
|
include/wait_for_slave_to_stop.inc
|
|
change master to master_user='replssl',master_password='';
|
|
Warnings:
|
|
Note #### Sending passwords in plain text without SSL/TLS is extremely insecure.
|
|
Note #### Storing MySQL user name or password information in the master info repository is not secure and is therefore not recommended. Please consider using the USER and PASSWORD connection options for START SLAVE; see the 'START SLAVE Syntax' in the MySQL Manual for more information.
|
|
start slave;
|
|
include/wait_for_slave_io_error.inc [errno=1045]
|
|
include/stop_slave_sql.inc
|
|
change master to master_ssl=1 , master_ssl_ca ='MYSQL_TEST_DIR/std_data/cacert.pem', master_ssl_cert='MYSQL_TEST_DIR/std_data/client-cert.pem', master_ssl_key='MYSQL_TEST_DIR/std_data/client-key.pem', master_tls_version='TLSv1.2';
|
|
start slave;
|
|
include/wait_for_slave_to_start.inc
|
|
insert into t1 values (1);
|
|
include/sync_slave_sql_with_master.inc
|
|
select * from t1;
|
|
t
|
|
1
|
|
Master_SSL_Allowed = 'Yes'
|
|
Master_SSL_CA_Path = ''
|
|
Master_SSL_CA_File = 'MYSQL_TEST_DIR/std_data/cacert.pem'
|
|
Master_SSL_Cert = 'MYSQL_TEST_DIR/std_data/client-cert.pem'
|
|
Master_SSL_Key = 'MYSQL_TEST_DIR/std_data/client-key.pem'
|
|
Master_TLS_Version = 'TLSv1.2'
|
|
include/check_slave_is_running.inc
|
|
stop slave;
|
|
include/wait_for_slave_to_stop.inc
|
|
change master to master_user='root',master_password='', master_ssl=0;
|
|
Warnings:
|
|
Note #### Sending passwords in plain text without SSL/TLS is extremely insecure.
|
|
Note #### Storing MySQL user name or password information in the master info repository is not secure and is therefore not recommended. Please consider using the USER and PASSWORD connection options for START SLAVE; see the 'START SLAVE Syntax' in the MySQL Manual for more information.
|
|
start slave;
|
|
include/wait_for_slave_to_start.inc
|
|
SET SQL_LOG_BIN= 0;
|
|
drop user replssl@localhost;
|
|
SET SQL_LOG_BIN= 1;
|
|
drop table t1;
|
|
include/sync_slave_sql_with_master.inc
|
|
Master_SSL_Allowed = 'No'
|
|
Master_SSL_CA_Path = ''
|
|
Master_SSL_CA_File = 'MYSQL_TEST_DIR/std_data/cacert.pem'
|
|
Master_SSL_Cert = 'MYSQL_TEST_DIR/std_data/client-cert.pem'
|
|
Master_SSL_Key = 'MYSQL_TEST_DIR/std_data/client-key.pem'
|
|
Master_TLS_Version = 'TLSv1.2'
|
|
include/check_slave_is_running.inc
|
|
stop slave;
|
|
include/wait_for_slave_to_stop.inc
|
|
change master to
|
|
master_host="localhost",
|
|
master_ssl=1 ,
|
|
master_ssl_ca ='MYSQL_TEST_DIR/std_data/cacert.pem',
|
|
master_ssl_cert='MYSQL_TEST_DIR/std_data/client-cert.pem',
|
|
master_ssl_key='MYSQL_TEST_DIR/std_data/client-key.pem',
|
|
master_ssl_verify_server_cert=1;
|
|
start slave;
|
|
include/wait_for_slave_to_start.inc
|
|
create table t1 (t int);
|
|
insert into t1 values (1);
|
|
include/sync_slave_sql_with_master.inc
|
|
on slave
|
|
select * from t1;
|
|
t
|
|
1
|
|
Master_SSL_Allowed = 'Yes'
|
|
Master_SSL_CA_Path = ''
|
|
Master_SSL_CA_File = 'MYSQL_TEST_DIR/std_data/cacert.pem'
|
|
Master_SSL_Cert = 'MYSQL_TEST_DIR/std_data/client-cert.pem'
|
|
Master_SSL_Key = 'MYSQL_TEST_DIR/std_data/client-key.pem'
|
|
Master_TLS_Version = 'TLSv1.2'
|
|
include/check_slave_is_running.inc
|
|
drop table t1;
|
|
include/sync_slave_sql_with_master.inc
|
|
include/stop_slave.inc
|
|
include/assert.inc [Master_SSL_Verify_Server_Cert should NOT change on STOP SLAVE.]
|
|
RESET SLAVE;
|
|
include/assert.inc [Master_SSL_Verify_Server_Cert should NOT change on RESET SLAVE.]
|
|
CHANGE MASTER TO MASTER_PORT= MASTER_MYPORT;
|
|
include/assert.inc [Master_SSL_Verify_Server_Cert should NOT change on CHANGE MASTER.]
|
|
include/start_slave.inc
|
|
include/assert.inc [Master_SSL_Verify_Server_Cert should NOT change on START SLAVE.]
|
|
DROP TABLE IF EXISTS t1;
|
|
include/sync_slave_sql_with_master.inc
|
|
include/stop_slave.inc
|
|
CHANGE MASTER TO
|
|
master_host="127.0.0.1",
|
|
master_ssl_ca ='',
|
|
master_ssl_cert='',
|
|
master_ssl_key='',
|
|
master_ssl_verify_server_cert=0,
|
|
master_ssl=0,
|
|
master_tls_version='';
|
|
include/rpl_end.inc
|