Pratyush.INFO
Simplicity . Silence . Surrender

How to enable SQL database triggers for the Amazon RDS (log_bin_trust_function_creators = 1)


This article explains how to enable SQL database triggers for the Amazon Relational Database Service (RDS). This is needed, for instance, whenever you try to import a database into the RDS using SQL clients.


If one attempts to create a SQL database trigger, then the database server will complain and throw an error: “ERROR 1419 (HY000) at line #: You do not have the SUPER privilege and binary logging is enabled (you might want to use the less safe log_bin_trust_function_creators variable)“.

It happens that Amazon decided to disable all user defined SQL code, as binary procedures could compromise the RDS architecture. And for this purpose, Amazon blocked granting the missing ‘SUPER’ privileges to any database user except the ‘rdsadmin’ user owned by Amazon itself.

As a workaround, one may set the mysterious parameter ‘log_bin_trust_function_creators’ to 1, that prevents the database from complaining against simple and inoffensive triggers. Though, setting this parameter requires following steps:

  • Open the RDS web console.
  • Open the “Parameter Groups” tab.
  • Create a new Parameter Group. On the dialog, select the MySQL family compatible to your MySQL database version, give it a name and confirm.
  • Select the just created Parameter Group and issue “Edit Parameters”.
  • Look for the parameter ‘log_bin_trust_function_creators’ and set its value to ‘1’.
  • Save the changes.
  • Open the “Instances” tab. Expand your MySQL instance and issue the “Instance Action” named “Modify”.
  • Select the just created Parameter Group and enable “Apply Immediately”.
  • Click on “Continue” and confirm the changes.
  • Open the “Instances” tab. Expand your MySQL instance and issue the “Instance Action” named “Reboot”.
Now you can import the data using your client.