2009-12-15 23:52:47 +04:00
|
|
|
#ifndef SQL_AUDIT_INCLUDED
|
|
|
|
#define SQL_AUDIT_INCLUDED
|
|
|
|
|
2014-01-06 10:52:35 +05:30
|
|
|
/* Copyright (c) 2007, 2013, Oracle and/or its affiliates. All rights reserved.
|
2009-12-15 23:52:47 +04:00
|
|
|
|
|
|
|
This program is free software; you can redistribute it and/or modify
|
|
|
|
it under the terms of the GNU General Public License as published by
|
|
|
|
the Free Software Foundation; version 2 of the License.
|
|
|
|
|
|
|
|
This program is distributed in the hope that it will be useful,
|
|
|
|
but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
GNU General Public License for more details.
|
|
|
|
|
|
|
|
You should have received a copy of the GNU General Public License
|
|
|
|
along with this program; if not, write to the Free Software
|
2011-06-30 17:46:53 +02:00
|
|
|
Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA */
|
2009-12-15 23:52:47 +04:00
|
|
|
|
|
|
|
|
2010-12-21 13:00:26 +01:00
|
|
|
#include <my_global.h>
|
|
|
|
|
2009-12-15 23:52:47 +04:00
|
|
|
#include <mysql/plugin_audit.h>
|
2010-03-31 16:05:33 +02:00
|
|
|
#include "sql_class.h"
|
2009-12-15 23:52:47 +04:00
|
|
|
|
|
|
|
extern unsigned long mysql_global_audit_mask[];
|
|
|
|
|
|
|
|
|
|
|
|
extern void mysql_audit_initialize();
|
|
|
|
extern void mysql_audit_finalize();
|
|
|
|
|
|
|
|
|
|
|
|
extern void mysql_audit_init_thd(THD *thd);
|
|
|
|
extern void mysql_audit_free_thd(THD *thd);
|
2013-01-15 19:16:29 +01:00
|
|
|
extern void mysql_audit_acquire_plugins(THD *thd, ulong *event_class_mask);
|
2009-12-15 23:52:47 +04:00
|
|
|
|
|
|
|
|
2010-12-14 17:34:23 +03:00
|
|
|
#ifndef EMBEDDED_LIBRARY
|
2009-12-15 23:52:47 +04:00
|
|
|
extern void mysql_audit_notify(THD *thd, uint event_class,
|
|
|
|
uint event_subtype, ...);
|
2012-11-08 16:49:07 +01:00
|
|
|
|
|
|
|
static inline bool mysql_audit_general_enabled()
|
|
|
|
{
|
|
|
|
return mysql_global_audit_mask[0] & MYSQL_AUDIT_GENERAL_CLASSMASK;
|
|
|
|
}
|
|
|
|
|
2013-04-19 12:50:16 +02:00
|
|
|
static inline bool mysql_audit_table_enabled()
|
|
|
|
{
|
|
|
|
return mysql_global_audit_mask[0] & MYSQL_AUDIT_TABLE_CLASSMASK;
|
|
|
|
}
|
|
|
|
|
2010-12-14 17:34:23 +03:00
|
|
|
#else
|
2012-11-08 16:49:07 +01:00
|
|
|
static inline void mysql_audit_notify(THD *thd, uint event_class,
|
|
|
|
uint event_subtype, ...) { }
|
|
|
|
#define mysql_audit_general_enabled() 0
|
2013-04-19 12:50:16 +02:00
|
|
|
#define mysql_audit_table_enabled() 0
|
2010-12-14 17:34:23 +03:00
|
|
|
#endif
|
2009-12-15 23:52:47 +04:00
|
|
|
extern void mysql_audit_release(THD *thd);
|
|
|
|
|
2009-12-16 15:56:36 +04:00
|
|
|
#define MAX_USER_HOST_SIZE 512
|
|
|
|
static inline uint make_user_name(THD *thd, char *buf)
|
|
|
|
{
|
2013-04-19 12:50:16 +02:00
|
|
|
const Security_context *sctx= thd->security_ctx;
|
2009-12-16 15:56:36 +04:00
|
|
|
return strxnmov(buf, MAX_USER_HOST_SIZE,
|
2010-08-09 11:32:50 +03:00
|
|
|
sctx->priv_user[0] ? sctx->priv_user : "", "[",
|
2009-12-16 15:56:36 +04:00
|
|
|
sctx->user ? sctx->user : "", "] @ ",
|
|
|
|
sctx->host ? sctx->host : "", " [",
|
|
|
|
sctx->ip ? sctx->ip : "", "]", NullS) - buf;
|
|
|
|
}
|
2009-12-15 23:52:47 +04:00
|
|
|
|
|
|
|
/**
|
2009-12-16 15:56:36 +04:00
|
|
|
Call audit plugins of GENERAL audit class, MYSQL_AUDIT_GENERAL_LOG subtype.
|
2009-12-15 23:52:47 +04:00
|
|
|
|
|
|
|
@param[in] thd
|
|
|
|
@param[in] time time that event occurred
|
|
|
|
@param[in] user User name
|
|
|
|
@param[in] userlen User name length
|
|
|
|
@param[in] cmd Command name
|
|
|
|
@param[in] cmdlen Command name length
|
|
|
|
@param[in] query Query string
|
|
|
|
@param[in] querylen Query string length
|
|
|
|
*/
|
|
|
|
|
2009-12-16 15:56:36 +04:00
|
|
|
static inline
|
|
|
|
void mysql_audit_general_log(THD *thd, time_t time,
|
|
|
|
const char *user, uint userlen,
|
|
|
|
const char *cmd, uint cmdlen,
|
|
|
|
const char *query, uint querylen)
|
|
|
|
{
|
2012-11-08 14:17:53 +01:00
|
|
|
if (mysql_audit_general_enabled())
|
2009-12-16 15:56:36 +04:00
|
|
|
{
|
|
|
|
CHARSET_INFO *clientcs= thd ? thd->variables.character_set_client
|
|
|
|
: global_system_variables.character_set_client;
|
2014-02-28 00:23:20 +04:00
|
|
|
const char *db= thd ? thd->db : "";
|
|
|
|
size_t db_length= thd ? thd->db_length : 0;
|
2009-12-16 15:56:36 +04:00
|
|
|
|
|
|
|
mysql_audit_notify(thd, MYSQL_AUDIT_GENERAL_CLASS, MYSQL_AUDIT_GENERAL_LOG,
|
|
|
|
0, time, user, userlen, cmd, cmdlen,
|
2013-09-09 16:56:35 +05:00
|
|
|
query, querylen, clientcs, (ha_rows) 0,
|
2014-02-28 00:23:20 +04:00
|
|
|
db, db_length);
|
2009-12-16 15:56:36 +04:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
Call audit plugins of GENERAL audit class.
|
|
|
|
event_subtype should be set to one of:
|
|
|
|
MYSQL_AUDIT_GENERAL_ERROR
|
|
|
|
MYSQL_AUDIT_GENERAL_RESULT
|
2010-12-14 17:34:23 +03:00
|
|
|
MYSQL_AUDIT_GENERAL_STATUS
|
2009-12-16 15:56:36 +04:00
|
|
|
|
|
|
|
@param[in] thd
|
|
|
|
@param[in] event_subtype Type of general audit event.
|
|
|
|
@param[in] error_code Error code
|
|
|
|
@param[in] msg Message
|
|
|
|
*/
|
2009-12-15 23:52:47 +04:00
|
|
|
static inline
|
|
|
|
void mysql_audit_general(THD *thd, uint event_subtype,
|
2009-12-16 15:56:36 +04:00
|
|
|
int error_code, const char *msg)
|
2009-12-15 23:52:47 +04:00
|
|
|
{
|
2012-11-08 14:17:53 +01:00
|
|
|
if (mysql_audit_general_enabled())
|
2009-12-16 15:56:36 +04:00
|
|
|
{
|
|
|
|
time_t time= my_time(0);
|
|
|
|
uint msglen= msg ? strlen(msg) : 0;
|
2010-11-18 17:08:32 +03:00
|
|
|
const char *user;
|
|
|
|
uint userlen;
|
2009-12-16 15:56:36 +04:00
|
|
|
char user_buff[MAX_USER_HOST_SIZE];
|
2010-11-18 17:08:32 +03:00
|
|
|
CSET_STRING query;
|
2009-12-16 15:56:36 +04:00
|
|
|
ha_rows rows;
|
2014-02-28 00:23:20 +04:00
|
|
|
const char *db;
|
|
|
|
size_t db_length;
|
2009-12-16 15:56:36 +04:00
|
|
|
|
|
|
|
if (thd)
|
|
|
|
{
|
2010-11-18 17:08:32 +03:00
|
|
|
query= thd->query_string;
|
2009-12-16 15:56:36 +04:00
|
|
|
user= user_buff;
|
|
|
|
userlen= make_user_name(thd, user_buff);
|
|
|
|
rows= thd->warning_info->current_row_for_warning();
|
2014-02-28 00:23:20 +04:00
|
|
|
db= thd->db;
|
|
|
|
db_length= thd->db_length;
|
2009-12-16 15:56:36 +04:00
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
2010-11-18 17:08:32 +03:00
|
|
|
user= 0;
|
|
|
|
userlen= 0;
|
2009-12-16 15:56:36 +04:00
|
|
|
rows= 0;
|
2014-02-28 00:23:20 +04:00
|
|
|
db= "";
|
|
|
|
db_length= 0;
|
2009-12-16 15:56:36 +04:00
|
|
|
}
|
|
|
|
|
2009-12-15 23:52:47 +04:00
|
|
|
mysql_audit_notify(thd, MYSQL_AUDIT_GENERAL_CLASS, event_subtype,
|
2009-12-16 15:56:36 +04:00
|
|
|
error_code, time, user, userlen, msg, msglen,
|
2013-09-09 16:56:35 +05:00
|
|
|
query.str(), query.length(), query.charset(), rows,
|
2014-02-28 00:23:20 +04:00
|
|
|
db, db_length);
|
2009-12-16 15:56:36 +04:00
|
|
|
}
|
2009-12-15 23:52:47 +04:00
|
|
|
}
|
|
|
|
|
2010-12-14 17:34:23 +03:00
|
|
|
#define MYSQL_AUDIT_NOTIFY_CONNECTION_CONNECT(thd) mysql_audit_notify(\
|
|
|
|
(thd), MYSQL_AUDIT_CONNECTION_CLASS, MYSQL_AUDIT_CONNECTION_CONNECT,\
|
|
|
|
(thd)->stmt_da->is_error() ? (thd)->stmt_da->sql_errno() : 0,\
|
|
|
|
(thd)->thread_id, (thd)->security_ctx->user,\
|
|
|
|
(thd)->security_ctx->user ? strlen((thd)->security_ctx->user) : 0,\
|
|
|
|
(thd)->security_ctx->priv_user, strlen((thd)->security_ctx->priv_user),\
|
|
|
|
(thd)->security_ctx->external_user,\
|
|
|
|
(thd)->security_ctx->external_user ?\
|
|
|
|
strlen((thd)->security_ctx->external_user) : 0,\
|
|
|
|
(thd)->security_ctx->proxy_user, strlen((thd)->security_ctx->proxy_user),\
|
|
|
|
(thd)->security_ctx->host,\
|
|
|
|
(thd)->security_ctx->host ? strlen((thd)->security_ctx->host) : 0,\
|
|
|
|
(thd)->security_ctx->ip,\
|
|
|
|
(thd)->security_ctx->ip ? strlen((thd)->security_ctx->ip) : 0,\
|
|
|
|
(thd)->db, (thd)->db ? strlen((thd)->db) : 0)
|
|
|
|
|
|
|
|
#define MYSQL_AUDIT_NOTIFY_CONNECTION_DISCONNECT(thd, errcode)\
|
|
|
|
mysql_audit_notify(\
|
|
|
|
(thd), MYSQL_AUDIT_CONNECTION_CLASS, MYSQL_AUDIT_CONNECTION_DISCONNECT,\
|
2013-09-09 16:56:35 +05:00
|
|
|
(errcode), (thd)->thread_id, (thd)->security_ctx->user,\
|
|
|
|
(thd)->security_ctx->user ? strlen((thd)->security_ctx->user) : 0,\
|
|
|
|
0, 0, 0, 0, 0, 0, (thd)->security_ctx->host,\
|
|
|
|
(thd)->security_ctx->host ? strlen((thd)->security_ctx->host) : 0,\
|
|
|
|
0, 0, 0, 0)
|
2010-12-14 17:34:23 +03:00
|
|
|
|
|
|
|
#define MYSQL_AUDIT_NOTIFY_CONNECTION_CHANGE_USER(thd) mysql_audit_notify(\
|
|
|
|
(thd), MYSQL_AUDIT_CONNECTION_CLASS, MYSQL_AUDIT_CONNECTION_CHANGE_USER,\
|
|
|
|
(thd)->stmt_da->is_error() ? (thd)->stmt_da->sql_errno() : 0,\
|
|
|
|
(thd)->thread_id, (thd)->security_ctx->user,\
|
|
|
|
(thd)->security_ctx->user ? strlen((thd)->security_ctx->user) : 0,\
|
|
|
|
(thd)->security_ctx->priv_user, strlen((thd)->security_ctx->priv_user),\
|
|
|
|
(thd)->security_ctx->external_user,\
|
|
|
|
(thd)->security_ctx->external_user ?\
|
|
|
|
strlen((thd)->security_ctx->external_user) : 0,\
|
|
|
|
(thd)->security_ctx->proxy_user, strlen((thd)->security_ctx->proxy_user),\
|
|
|
|
(thd)->security_ctx->host,\
|
|
|
|
(thd)->security_ctx->host ? strlen((thd)->security_ctx->host) : 0,\
|
|
|
|
(thd)->security_ctx->ip,\
|
|
|
|
(thd)->security_ctx->ip ? strlen((thd)->security_ctx->ip) : 0,\
|
|
|
|
(thd)->db, (thd)->db ? strlen((thd)->db) : 0)
|
2009-12-15 23:52:47 +04:00
|
|
|
|
2013-04-19 12:50:16 +02:00
|
|
|
static inline
|
|
|
|
void mysql_audit_external_lock(THD *thd, TABLE_SHARE *share, int lock)
|
|
|
|
{
|
|
|
|
if (lock != F_UNLCK && mysql_audit_table_enabled())
|
|
|
|
{
|
|
|
|
const Security_context *sctx= thd->security_ctx;
|
|
|
|
mysql_audit_notify(thd, MYSQL_AUDIT_TABLE_CLASS, MYSQL_AUDIT_TABLE_LOCK,
|
|
|
|
(int)(lock == F_RDLCK), (ulong)thd->thread_id,
|
|
|
|
sctx->user, sctx->priv_user, sctx->priv_host,
|
|
|
|
sctx->external_user, sctx->proxy_user, sctx->host,
|
|
|
|
sctx->ip, share->db.str, (uint)share->db.length,
|
|
|
|
share->table_name.str, (uint)share->table_name.length,
|
|
|
|
0,0,0,0);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
static inline
|
|
|
|
void mysql_audit_create_table(TABLE *table)
|
|
|
|
{
|
|
|
|
if (mysql_audit_table_enabled())
|
|
|
|
{
|
|
|
|
THD *thd= table->in_use;
|
|
|
|
const TABLE_SHARE *share= table->s;
|
|
|
|
const Security_context *sctx= thd->security_ctx;
|
|
|
|
mysql_audit_notify(thd, MYSQL_AUDIT_TABLE_CLASS, MYSQL_AUDIT_TABLE_CREATE,
|
|
|
|
0, (ulong)thd->thread_id,
|
|
|
|
sctx->user, sctx->priv_user, sctx->priv_host,
|
|
|
|
sctx->external_user, sctx->proxy_user, sctx->host,
|
|
|
|
sctx->ip, share->db.str, (uint)share->db.length,
|
|
|
|
share->table_name.str, (uint)share->table_name.length,
|
|
|
|
0,0,0,0);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
static inline
|
|
|
|
void mysql_audit_drop_table(THD *thd, TABLE_LIST *table)
|
|
|
|
{
|
|
|
|
if (mysql_audit_table_enabled())
|
|
|
|
{
|
|
|
|
const Security_context *sctx= thd->security_ctx;
|
|
|
|
mysql_audit_notify(thd, MYSQL_AUDIT_TABLE_CLASS, MYSQL_AUDIT_TABLE_DROP,
|
|
|
|
0, (ulong)thd->thread_id,
|
|
|
|
sctx->user, sctx->priv_user, sctx->priv_host,
|
|
|
|
sctx->external_user, sctx->proxy_user, sctx->host,
|
|
|
|
sctx->ip, table->db, (uint)table->db_length,
|
|
|
|
table->table_name, (uint)table->table_name_length,
|
|
|
|
0,0,0,0);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
static inline
|
|
|
|
void mysql_audit_rename_table(THD *thd, const char *old_db, const char *old_tb,
|
|
|
|
const char *new_db, const char *new_tb)
|
|
|
|
{
|
|
|
|
if (mysql_audit_table_enabled())
|
|
|
|
{
|
|
|
|
const Security_context *sctx= thd->security_ctx;
|
|
|
|
mysql_audit_notify(thd, MYSQL_AUDIT_TABLE_CLASS, MYSQL_AUDIT_TABLE_RENAME,
|
|
|
|
0, (ulong)thd->thread_id,
|
|
|
|
sctx->user, sctx->priv_user, sctx->priv_host,
|
|
|
|
sctx->external_user, sctx->proxy_user, sctx->host,
|
|
|
|
sctx->ip,
|
|
|
|
old_db, (uint)strlen(old_db), old_tb, (uint)strlen(old_tb),
|
|
|
|
new_db, (uint)strlen(new_db), new_tb, (uint)strlen(new_tb));
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
static inline
|
|
|
|
void mysql_audit_alter_table(THD *thd, TABLE_LIST *table)
|
|
|
|
{
|
|
|
|
if (mysql_audit_table_enabled())
|
|
|
|
{
|
|
|
|
const Security_context *sctx= thd->security_ctx;
|
|
|
|
mysql_audit_notify(thd, MYSQL_AUDIT_TABLE_CLASS, MYSQL_AUDIT_TABLE_ALTER,
|
|
|
|
0, (ulong)thd->thread_id,
|
|
|
|
sctx->user, sctx->priv_user, sctx->priv_host,
|
|
|
|
sctx->external_user, sctx->proxy_user, sctx->host,
|
|
|
|
sctx->ip, table->db, (uint)table->db_length,
|
|
|
|
table->table_name, (uint)table->table_name_length,
|
|
|
|
0,0,0,0);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2009-12-15 23:52:47 +04:00
|
|
|
#endif /* SQL_AUDIT_INCLUDED */
|