Pentest-Report Vitess 02.2019MSc. N. Krein, MSc. D. Weißer, J. Larsson Index Introduction Scope Test Methodology Phase 1. Manual Code Auditing Phase 2. Code-Assisted Penetration Testing Miscellaneous Issues VIT-01-001 MySQL: goals that were closely linked to the areas in scope. The initial phase (Phase 1) mostly comprised manual source code reviews, in particular in terms of the API endpoints, input handlers and parsers. The Kubernetes environment. Phase 1. Manual Code Auditing The following list of items presents the noteworthy steps undertaken during the first part of the test, which entailed the manual code audit of the sources0 码力 | 9 页 | 155.02 KB | 1 年前3
Vitess security auditinstantly, as the shard fuzzer found more special cases in the shard name than were found during the manual auditing. Ada Logics added the three fuzzers to Vitess's OSS-Fuzz integration, allowing them to and set to be a 5-week engagement. The goals were to formalize a threat model of VTAdmin, conduct a manual code review of VTAdmin and the remaining Vitess codebase, assess and improve Vitessʼs fuzzing suite0 码力 | 41 页 | 1.10 MB | 1 年前3
The Vitess 8.0 DocumentationVitess’ flexible sharding and management instead of our simple application-based shard routing and manual administration. This effort is driven by the need for an architecture that scales to meet the growing create and maintain continually updated materialized views in Vitess, without having to resort to manual or trigger-based population of the view content. Since Materialize uses VReplication, the view can version may require manual configuration changes. In general, always read the ‘Upgrading’ section of the release notes. It will mention any incompatible changes and necessary manual steps. Upgrade Order0 码力 | 331 页 | 1.35 MB | 1 年前3
The Vitess 6.0 DocumentationVitess’ flexible sharding and management instead of our simple application-based shard routing and manual administration. This effort is driven by the need for an architecture that scales to meet the growing version may require manual configuration changes. In general, always read the ‘Upgrading’ section of the release notes. It will mention any incompatible changes and necessary manual steps. Upgrade Order0 码力 | 210 页 | 846.79 KB | 1 年前3
The Vitess 5.0 DocumentationVitess’ flexible sharding and management instead of our simple application-based shard routing and manual administration. This effort is driven by the need for an architecture that scales to meet the growing version may require manual configuration changes. In general, always read the ‘Upgrading’ section of the release notes. It will mention any incompatible changes and necessary manual steps. Upgrade Order0 码力 | 206 页 | 875.06 KB | 1 年前3
The Vitess 9.0 DocumentationVitess’ flexible sharding and management instead of our simple application-based shard routing and manual administration. This effort is driven by the need for an architecture that scales to meet the growing create and maintain continually updated materialized views in Vitess, without having to resort to manual or trigger-based population of the view content. Since Materialize uses VReplication, the view can version may require manual configuration changes. In general, always read the ‘Upgrading’ section of the release notes. It will mention any incompatible changes and necessary manual steps. 369 Upgrade0 码力 | 417 页 | 2.96 MB | 1 年前3
The Vitess 7.0 DocumentationVitess’ flexible sharding and management instead of our simple application-based shard routing and manual administration. This effort is driven by the need for an architecture that scales to meet the growing version may require manual configuration changes. In general, always read the ‘Upgrading’ section of the release notes. It will mention any incompatible changes and necessary manual steps. Upgrade Order0 码力 | 254 页 | 949.63 KB | 1 年前3
The Vitess 11.0 DocumentationVitess’ flexible sharding and management instead of our simple application-based shard routing and manual administration. This effort is driven by the need for an architecture that scales to meet the growing create and maintain continually updated materialized views in Vitess, without having to resort to manual or trigger-based population of the view content. Since Materialize uses VReplication, the view can version may require manual configuration changes. In general, always read the ‘Upgrading’ section of the release notes. It will mention any incompatible changes and necessary manual steps. Upgrade Order0 码力 | 481 页 | 3.14 MB | 1 年前3
The Vitess 10.0 Documentation
Vitess’ flexible sharding and management instead of our simple application-based shard routing and manual administration. This effort is driven by the need for an architecture that scales to meet the growing create and maintain continually updated materialized views in Vitess, without having to resort to manual or trigger-based population of the view content. Since Materialize uses VReplication, the view can version may require manual configuration changes. In general, always read the ‘Upgrading’ section of the release notes. It will mention any incompatible changes and necessary manual steps. Upgrade Order0 码力 | 455 页 | 3.07 MB | 1 年前3
The Vitess 12.0 DocumentationVitess’ flexible sharding and management instead of our simple application-based shard routing and manual administration. This effort is driven by the need for an architecture that scales to meet the growing whatever certificate policies and procedures the organization mandates. It should be noted that the manual issuing and rotation of certificates in a Vitess environment of a non-trivial size is impractical create and maintain continually updated materialized views in Vitess, without having to resort to manual or trigger-based population of the view content. Since Materialize uses VReplication, the view can0 码力 | 534 页 | 3.32 MB | 1 年前3
共 10 条
- 1













