Whilst I can see the benefit of running as root with "grant all" in
development (I want to be able to do anything I want to, any time I want to!
:-), this strikes me as poor practice for a production instance.

What is the minimum set of database privileges needed for the production
instance of Mifos to run?

I believe that root should be used to create the database and set up the
necessary and sufficient privileges for the production user, then the
production user should be the one specified in the deploymifosDB.properties
file and used for normal operations.

This will require extra steps in the creation of a Mifos system but I
believe will be better security practice in the long run.

Does anyone else have any thoughts on this?

Regards
Graeme


-------------------------------------------------------------------------
This SF.Net email is sponsored by the Moblin Your Move Developer's challenge
Build the coolest Linux based applications with Moblin SDK & win great prizes
Grand prize is a trip for two to an Open Source event anywhere in the world
http://moblin-contest.org/redirect.php?banner_id=100&url=/
_______________________________________________
Mifos-users mailing list
Mifos-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/mifos-users

Reply via email to