• DISA used to maintain SRR scripts that could do some of the checks in an automated fashion but they stopped supporting it over 3 years ago. Other automated tools like SCAP do not have a benchmark for the TWO SQL checklists you have to go through (DB and instance), so it is sadly a very manual and very long process.

    If you have to go through the SQL 2005 STIGs and try and remove permissions from PUBLIC take a look at the Fort SQL blog. It is old and not updated anymore, but had a lot of good tips for approaching the SQL 2005 STIGs.

    Remove Public and Guest Permissions


    Public Not Granted Server Permissions


    Connection Error After Removing Public Permissions


    Joie Andrew
    "Since 1982"