1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126
|
include/master-slave.inc
Warnings:
Note #### Sending passwords in plain text without SSL/TLS is extremely insecure.
Note #### Storing MySQL user name or password information in the connection metadata repository is not secure and is therefore not recommended. Please consider using the USER and PASSWORD connection options for START REPLICA; see the 'START REPLICA Syntax' in the MySQL Manual for more information.
[connection master]
call mtr.add_suppression("\\[Error\\] .*MY-\\d+.* Function 'keyring_file' already exists");
call mtr.add_suppression("\\[Error\\] .*MY-\\d+.* Couldn't load plugin named 'keyring_file' with soname 'keyring_file.so'.");
call mtr.add_suppression("\\[Error\\] .*MY-\\d+.* Can't generate new master key, please check the keyring is loaded.");
call mtr.add_suppression("\\[Error\\] .*MY-\\d+.* Encryption can't find master key, please check the keyring is loaded.");
call mtr.add_suppression("Error 'Can't find master key from keyring, please check in the server log if a keyring is loaded and initialized successfully.");
call mtr.add_suppression("\\[Warning\\] .*MY-\\d+.* Replica: Can't find master key from keyring, please check in the server log if a keyring is loaded and initialized successfully.");
call mtr.add_suppression("\\[Error\\] .*MY-\\d+.* Can't generate new master key for tablespace encryption, please check the keyring is loaded.");
call mtr.add_suppression("The replica coordinator and worker threads are stopped");
[On Master]
ALTER INSTANCE ROTATE INNODB MASTER KEY;
CREATE TABLE t1(c1 INT PRIMARY KEY, c2 char(20)) ENCRYPTION="Y" ENGINE = InnoDB;
INSERT INTO t1 VALUES(0, "aaaaa");
INSERT INTO t1 VALUES(1, "bbbbb");
INSERT INTO t1 VALUES(2, "ccccc");
SELECT * FROM t1;
c1 c2
0 aaaaa
1 bbbbb
2 ccccc
ALTER INSTANCE ROTATE INNODB MASTER KEY;
CREATE TABLE t2(c1 INT PRIMARY KEY, c2 char(20)) ENCRYPTION="Y" ENGINE = InnoDB;
INSERT INTO t2 SELECT * FROM t1;
SELECT COUNT(*) FROM t2;
COUNT(*)
3
# Check for keyring file on master.
keyring_master
ALTER INSTANCE ROTATE INNODB MASTER KEY;
# Check for keyring file on master.
keyring_master
SELECT * FROM t1;
c1 c2
0 aaaaa
1 bbbbb
2 ccccc
include/sync_slave_sql_with_master.inc
[On Slave]
# Check for keyring file on slave.
keyring_slave
SELECT COUNT(*) FROM t2;
COUNT(*)
3
SELECT * FROM t1;
c1 c2
0 aaaaa
1 bbbbb
2 ccccc
# Check for keyring file on slave.
keyring_slave
[On Master]
#
CREATE TABLE t3(c1 INT PRIMARY KEY, c2 char(20)) ENCRYPTION="Y" ENGINE = InnoDB;
INSERT INTO t3 VALUES(0, "aaaaa");
include/sync_slave_sql_with_master.inc
[On Slave]
SELECT * FROM t3;
c1 c2
0 aaaaa
SELECT COUNT(*) FROM t2;
COUNT(*)
3
SELECT * FROM t1;
c1 c2
0 aaaaa
1 bbbbb
2 ccccc
# Check for keyring file on slave.
keyring_slave
ALTER INSTANCE ROTATE INNODB MASTER KEY;
# Check for keyring file on slave.
keyring_slave
UNINSTALL PLUGIN keyring_file;
# Checking keyring plugin after uninstall.
SELECT PLUGIN_NAME,PLUGIN_VERSION,PLUGIN_STATUS
FROM INFORMATION_SCHEMA.PLUGINS WHERE plugin_name='keyring_file';
include/stop_slave_sql.inc
[On Master]
CREATE TABLE t4(c1 INT PRIMARY KEY, c2 char(20)) ENCRYPTION="Y" ENGINE = InnoDB;
INSERT INTO t4 VALUES(1, "rpltest");
[On Slave]
START SLAVE SQL_THREAD;
Warnings:
Warning 1287 'START SLAVE' is deprecated and will be removed in a future release. Please use START REPLICA instead
include/wait_for_slave_sql_error.inc [errno=3185]
INSTALL PLUGIN keyring_file SONAME 'keyring_file.so';
SET @@global.keyring_file_data='MYSQL_TMP_DIR/keyring_slave/keyring_slave';
SELECT PLUGIN_NAME,PLUGIN_VERSION,PLUGIN_STATUS
FROM INFORMATION_SCHEMA.PLUGINS WHERE plugin_name='keyring_file';
PLUGIN_NAME keyring_file
PLUGIN_VERSION 1.0
PLUGIN_STATUS ACTIVE
include/start_slave_sql.inc
include/sync_slave_sql_with_master.inc
SELECT * FROM t4;
c1 c2
1 rpltest
[On Master]
# Uninstalling keyring_file plugin on master.
UNINSTALL PLUGIN keyring_file;
# Checking keyring plugin after uninstall.
SELECT PLUGIN_NAME,PLUGIN_VERSION,PLUGIN_STATUS
FROM INFORMATION_SCHEMA.PLUGINS WHERE plugin_name='keyring_file';
SELECT * FROM t1;
c1 c2
0 aaaaa
1 bbbbb
2 ccccc
ALTER INSTANCE ROTATE INNODB MASTER KEY;
ERROR HY000: Can't find master key from keyring, please check in the server log if a keyring is loaded and initialized successfully.
# Installing keyring_file plugin on master.
INSTALL PLUGIN keyring_file SONAME 'keyring_file.so';
# Cleanup
DROP TABLE t1,t2,t3,t4;
include/sync_slave_sql_with_master.inc
include/rpl_end.inc
|