首页 > 代码库 > Mysql对用户操作加审计功能——高级版


CREATE DATABASE `accesslog`;USE `accesslog`;CREATE TABLE `accesslog` (  `id` int(11) NOT NULL AUTO_INCREMENT,  `thread_id` int(11) DEFAULT NULL, #线程ID,这个值很重要  `log_time` timestamp NOT NULL DEF AULT CURRENT_TIMESTAMP ON UPDATE CURRENT_TIMESTAMP, #登录时间  `localname` varchar(30) DEFAULT NULL, #登录名称  `matchname` varchar(30) DEFAULT NULL, #登录用户  PRIMARY KEY (`id`)) ENGINE=InnoDB AUTO_INCREMENT=1 DEFAULT CHARSET=utf8;
init-connect=‘insert into accesslog.accesslog values(null,connection_id(),now(),user(),current_user());‘
grant insert,select,update on *.* to ‘user1‘@‘localhost‘; #带INSERT权限grant select,update on *.* to ‘user2‘@‘localhost‘; #不带INSERT权限
D:\mysql6\bin>mysql -uuser1 -pEnter password:Welcome to the MySQL monitor. Commands end with ; or \g.Your MySQL connection id is 65Server version: 5.1.45-community-log MySQL Community Server (GPL)Type ‘help;‘ or ‘\h‘ for help. Type ‘\c‘ to clear the current input statement.mysql> select * FROM accesslog.accesslog;+----+-----------+---------------------+-----------------+-----------------+| id | thread_id | log_time | localname | matchname |+----+-----------+---------------------+-----------------+-----------------+| 1 | 65 | 2011-03-11 19:18:25 | user1@localhost | user1@localhost |+----+-----------+---------------------+-----------------+-----------------+1 row in set (0.00 sec)mysql> show processlist;+----+-------+----------------+------+---------+------+-------+------------------+| Id | User | Host | db | Command | Time | State | Info |+----+-------+----------------+------+---------+------+-------+------------------+| 65 | user1 | localhost:1339 | NULL | Query | 0 | NULL | show processlist |+----+-------+----------------+------+---------+------+-------+------------------+1 row in set (0.00 sec)mysql>
D:\mysql6\bin>mysql -uuser2 -pEnter password:Welcome to the MySQL monitor. Commands end with ; or \g.Your MySQL connection id is 76Server version: 5.1.45-community-logType ‘help;‘ or ‘\h‘ for help. Type ‘\c‘ to clear the current input statement.mysql> select * FROM accesslog.accesslog;ERROR 2006 (HY000): MySQL server has gone awayNo connection. Trying to reconnect...Connection id: 77Current database: *** NONE ***ERROR 2013 (HY000): Lost connection to MySQL server during querymysql> select * FROM accesslog.accesslog;ERROR 2006 (HY000): MySQL server has gone awayNo connection. Trying to reconnect...Connection id: 78Current database: *** NONE ***
110311 19:23:47 [Warning] Aborted connection 77 to db: ‘unconnected‘ user: ‘user2‘ host: ‘localhost‘ (init_connect command failed)110311 19:23:47 [Warning] INSERT command denied to user ‘user2‘@‘localhost‘ for table ‘accesslog‘110311 19:23:53 [Warning] Aborted connection 78 to db: ‘unconnected‘ user: ‘user2‘ host: ‘localhost‘ (init_connect command failed)110311 19:23:53 [Warning] INSERT command denied to user ‘user2‘@‘localhost‘ for table ‘accesslog‘
mysql> insert into t3 values(10,10,‘2011-10-10 00:00:00‘);Query OK, 1 row affected (0.00 sec)mysql> show processlist;+----+-------+----------------+-----------+---------+------+-------+------------------+| Id | User | Host | db | Command | Time | State | Info |+----+-------+----------------+-----------+---------+------+-------+------------------+| 69 | user1 | localhost:1439 | accesslog | Query | 0 | NULL | show processlist |+----+-------+----------------+-----------+---------+------+-------+------------------+1 row in set (0.00 sec)mysql> select * from accesslog.accesslog;+----+-----------+---------------------+-----------------+-----------------+| id | thread_id | log_time | localname | matchname |+----+-----------+---------------------+-----------------+-----------------+| 1 | 65 | 2011-03-11 19:18:25 | user1@localhost | user1@localhost || 2 | 91 | 2011-03-11 19:28:33 | user1@localhost | user1@localhost || 3 | 2 | 2011-03-11 19:31:49 | user1@localhost | user1@localhost || 4 | 2 | 2000-10-10 10:10:10 | user1@localhost | user1@localhost || 5 | 21 | 2000-10-10 11:11:11 | root@localhost | root@% || 6 | 69 | 2011-03-12 21:35:43 | user1@localhost | user1@localhost |+----+-----------+---------------------+-----------------+-----------------+6 rows in set (0.01 sec)
# at 340#110312 21:36:01 server id 1 end_log_pos 453 Query thread_id=69 exec_time=0 error_code=0use text/*!*/;SET TIMESTAMP=1299936961/*!*/;insert into t3 values(10,10,‘2011-10-10 00:00:00‘)/*!*/;# at 453

