Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
activerecord-jdbc-adapter
Advanced tools
ActiveRecord-JDBC-Adapter (AR-JDBC) is the main database adapter for Rails' ActiveRecord component that can be used with JRuby. ActiveRecord-JDBC-Adapter provides full or nearly full support for: MySQL, PostgreSQL, SQLite3 and MSSQL* (SQLServer).
Unless we get more contributions we will not be supporting more adapters. Note that the amount of work needed to get another adapter is not huge but the amount of testing required to make sure that adapter continues to work is not something we can do with the resources we currently have.
Versions are targeted at certain versions of Rails and live on their own branches.
Gem Version | Rails Version | Branch | min JRuby | min Java |
---|---|---|---|---|
50.x | 5.0.x | 50-stable | 9.1.x | 7 |
51.x | 5.1.x | 51-stable | 9.1.x | 7 |
52.x | 5.2.x | 52-stable | 9.1.x | 7 |
60.x | 6.0.x | 60-stable | 9.2.7 | 8 |
61.x | 6.1.x | master | 9.2.7 | 8 |
Note that JRuby 9.1.x is end-of-life. We recommend Java 8 at a minimum for all versions.
To use AR-JDBC with JRuby on Rails:
activerecord-jdbcmysql-adapter
)activerecord-jdbcpostgresql-adapter
)activerecord-jdbcsqlite3-adapter
)activerecord-jdbcsqlserver-adapter
)If you're generating a new Rails application, use the following command:
jruby -S rails new sweetapp
Configure your database.yml in the normal Rails style:
development:
adapter: mysql2 # or mysql
database: blog_development
username: blog
password: 1234
For JNDI data sources, you may simply specify the JNDI location as follows, it's recommended to use the same adapter: setting as one would configure when using "bare" (JDBC) connections e.g. :
production:
adapter: postgresql
jndi: jdbc/PostgreDS
NOTE: any other settings such as database:, username:, properties: make no difference since everything is already configured on the JNDI DataSource end.
JDBC driver specific properties might be set if you use an URL to specify the DB or preferably using the properties: syntax:
production:
adapter: mysql
username: blog
password: blog
url: "jdbc:mysql://localhost:3306/blog?profileSQL=true"
properties: # specific to com.mysql.jdbc.Driver
socketTimeout: 60000
connectTimeout: 60000
Depending on the MySQL server configuration, it might be required to set additional connection properties for date/time support to work correctly. If you encounter problems, try adding this to your database configuration:
properties:
serverTimezone: <%= java.util.TimeZone.getDefault.getID %>
The correct timezone depends on the system setup, but the one shown is a good place to start and is actually the correct setting for many systems.
Once the setup is made (see below) you can establish a JDBC connection like this
(e.g. for activerecord-jdbcderby-adapter
):
ActiveRecord::Base.establish_connection(
adapter: 'sqlite3',
database: 'db/my-database'
)
Proceed as with Rails; specify ActiveRecord
in your Bundle along with the
chosen JDBC adapter(s), this time sample Gemfile for MySQL:
gem 'activerecord', '~> 6.0.3'
gem 'activerecord-jdbcmysql-adapter', '~> 60.2', :platform => :jruby
When you require 'bundler/setup'
everything will be set up for you as expected.
Install the needed gems with JRuby, for example:
gem install activerecord -v "~> 6.0.3"
gem install activerecord-jdbc-adapter -v "~> 60.2" --ignore-dependencies
If you wish to use the adapter for a specific database, you can install it directly and the (jdbc-) driver gem (dependency) will be installed as well:
jruby -S gem install activerecord-jdbcmysql-adapter -v "~> 60.2"
Your program should include:
require 'active_record'
require 'activerecord-jdbc-adapter' if defined? JRUBY_VERSION
The source for activerecord-jdbc-adapter is available using git:
git clone git://github.com/jruby/activerecord-jdbc-adapter.git
Please note that the project manages multiple gems from a single repository, if you're using Bundler >= 1.2 it should be able to locate all gemspecs from the git repository. Sample Gemfile for running with (MySQL) master:
gem 'activerecord-jdbc-adapter', :github => 'jruby/activerecord-jdbc-adapter'
gem 'activerecord-jdbcmysql-adapter', :github => 'jruby/activerecord-jdbc-adapter'
Please read our CONTRIBUTING & RUNNING_TESTS guides for starters. You can always help us by maintaining AR-JDBC's wiki.
Please report bugs at our issue tracker. If you're not sure if something's a bug, feel free to pre-report it on the mailing lists or ask on the #JRuby IRC channel on http://freenode.net/ (try web-chat).
This project was originally written by Nick Sieger and Ola Bini with lots of help from the JRuby community. Polished 3.x compatibility and 4.x support (for AR-JDBC >= 1.3.0) was managed by Karol Bucek among others. Support for Rails 6.0 and 6.1 was contributed by shellyBits GmbH
ActiveRecord-JDBC-Adapter is open-source released under the BSD/MIT license. See LICENSE.txt included with the distribution for details.
Open-source driver gems within AR-JDBC's sources are licensed under the same license the database's drivers are licensed. See each driver gem's LICENSE.txt.
FAQs
Unknown package
We found that activerecord-jdbc-adapter demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 3 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.