Softpedia
 


LINUX CATEGORIES:



GLOBAL PAGES >>
NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
WEEK'S BEST
  • Linux Kernel 3.9.3 / 3....
  • LibreOffice 3.6.6 / 4.0.3
  • MPlayer 1.1.1
  • systemd 204
  • Arch Linux 2013.05.01
  • Blender 2.67
  • KDE Software Compilatio...
  • CrunchBang Linux Stable...
  • Elementary OS 0.1 / 0.2...
  • SystemRescueCd 3.6.0
  • Home > Linux > System > Networking

    GreenSQL 0.3.5

    Download button

    No screenshots available
    Downloads: 1,040  View global page NEW!  Tell us about an update
    User Rating:
    Rated by:
    Fair (2.3/5)
    15 user(s)
    Developer:

    License / Price:

    Last Updated:

    Category:
    Yuli Stremovsky | More programs
    GPL / FREE
    May 12th, 2008, 14:36 GMT
    ROOT / System / Networking

     Read user reviews (1)  Refer to a friend  Subscribe

    GreenSQL description

    GreenSQL is an Open Source database firewall used to protect databases from SQL injection attacks.

    GreenSQL is an Open Source database firewall used to protect databases from SQL injection attacks. GreenSQL works in a proxy mode and has built in support for MySQL.

    The logic is based on evaluation of SQL commands using a risk scoring matrix as well as blocking known db administrative commands (DROP, CREATE, etc). The project is distributed under the GPL license.

    How it works?

    The GreenSQL database firewall provides database protection using a number of methods:

    Blocking administrative and sensitive SQL commands.
    Calculating risk of each query and blocking queries with high risk.

    Blocking specific SQL commands

    GreenSQL uses a pattern matching engine to find commands that are considered "illegal". For example GreenSQL blocks database administrative commands. The GreenSQL administrator can decide which commands to block using the GreenSQL web management console. The administrator can also approve a blocked query by adding them to a whitelist.

    Risk Calculation

    For each query GreenSQL calculates its risk. After the risk is calculated GreenSQL can block the query or just create a warning message. There are a number of factors that are taken into account when calculating risk. For example:

    Access to sensitive tables increases risk query (users, accounts, credit information)
    Comments inside SQL commands increases query risk
    Usage of an empty password string
    Found 'or' token inside query
    Found SQL expression that always return true
    Comparison of constant values

    How commands are blocked?

    When GreenSQL determines that a query should be blocked it will generate an empty result set to send back to the front end so that the application can continue gracefully.

    How Whitelist works?

    Each time GreenSQL considers a SQL query as a security risk - it is blocked. You can alter this behavior for a specific query by explicitly allowing its pattern.

    What's New in This Release:

    · Application management is much more simpler now
    · Bunch of bugs have been fixed



    Product's homepage

      


    TAGS:

    database firewall | SQL firewall | SQL injection | database | SQL | MySQL

    Go to top

    WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

    SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM