From: Reindl Harald Date: January 10 2012 1:27am Subject: hide server-version at connect? List-Archive: http://lists.mysql.com/mysql/226578 Message-Id: <4F0B9409.80603@thelounge.net> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="------------enigC50BEE2E00D721A31E020A33" --------------enigC50BEE2E00D721A31E020A33 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable Nessus/OpenVAS Test detects the exact server version _____________________________________ NVT: MySQL Detection (OID: 1.3.6.1.4.1.25623.1.0.100152) Overview: MySQL, a open source database system is running at this host. MySQL Version '5.5.19-log' was detected on the remote host. _____________________________________ is there any way to not disclosure the mysqld-version for a anonymous connected client? [harry@srv-rhsoft:~]$ telnet localhost 3306 Trying 127.0.0.1... Connected to localhost. Escape character is '^]'. N 5.5.19-logs+%b?QYO]g=EF=BF=BD=EF=BF=BDke8'Xg~e\}!(mysql_native_password --------------enigC50BEE2E00D721A31E020A33 Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iEYEARECAAYFAk8LlAkACgkQhmBjz394AnmgcACgg6WUZlRCsDTJw0HY82l4KBl7 7QoAn0lSvYKeLWZZGOFJkMCms/cO0sgk =Fydv -----END PGP SIGNATURE----- --------------enigC50BEE2E00D721A31E020A33--