﻿<?xml version='1.0' encoding='UTF-8'?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/"><channel><title>SQLServerCentral / Administering / SQL Server 2005  / data folder permission / Latest Posts</title><generator>InstantForum.NET v2.9.0</generator><description>SQLServerCentral</description><link>http://www.sqlservercentral.com/Forums/</link><webMaster>notifications@sqlservercentral.com</webMaster><lastBuildDate>Wed, 19 Jun 2013 11:26:13 GMT</lastBuildDate><ttl>20</ttl><item><title>RE: data folder permission</title><link>http://www.sqlservercentral.com/Forums/Topic1371906-146-1.aspx</link><description>thanks all</description><pubDate>Mon, 15 Oct 2012 04:48:58 GMT</pubDate><dc:creator>chewychewy</dc:creator></item><item><title>RE: data folder permission</title><link>http://www.sqlservercentral.com/Forums/Topic1371906-146-1.aspx</link><description>[quote][b]chewychewy (10/12/2012)[/b][hr]Hi,By default installation, SQLServer2005MSSQLuser$&amp;lt;INSTANCENAME&amp;gt;$MSSQLSERVER is having the below access to SQL Server Data folder.Full Control ModifyRead and ExecuteList Folder ContentsReadWriteAuditor highlight that this is a security concern and want us to revoke full control, modify, read and execute and write permission for SQLServer2005MSSQLuser$&amp;lt;INSTANCENAME&amp;gt;$MSSQLSERVER from the data folder.Any idea what is the security risk from security standpoint?Anyone here revoke it before? Any impact on doing it? thanks[/quote]This is a default local group created by the SQL Server installer, if you look in local user and group management you'll see a whole bunch of local groups created. Do not revoke permissions for this group!</description><pubDate>Mon, 15 Oct 2012 02:42:03 GMT</pubDate><dc:creator>Perry Whittle</dc:creator></item><item><title>RE: data folder permission</title><link>http://www.sqlservercentral.com/Forums/Topic1371906-146-1.aspx</link><description>[quote][b]chewychewy (10/15/2012)[/b][hr]So actually wish to know what is this group and is it needed for sql server to function.thanks[/quote] See it this can helps you [url]http://msdn.microsoft.com/en-us/library/ms143547(v=sql.100).aspx[/url]</description><pubDate>Mon, 15 Oct 2012 01:39:02 GMT</pubDate><dc:creator>Bhuvnesh</dc:creator></item><item><title>RE: data folder permission</title><link>http://www.sqlservercentral.com/Forums/Topic1371906-146-1.aspx</link><description>[quote][b]Bhuvnesh (10/15/2012)[/b][hr][quote][b]durai nagarajan (10/12/2012)[/b][hr]as per me no body can access using that logins so how security issue?[/quote] i second here , the above mentioend accesses are given by sql installation , and why any unauthorozed person will go there ,he.she should not have access to that drive too.[/quote]Hi All,I think from security point of view, the auditor doesn't want powerful privileges granted if it's not needed for SQL Server to function.So actually wish to know what is this group and is it needed for sql server to function.thanks</description><pubDate>Mon, 15 Oct 2012 01:18:54 GMT</pubDate><dc:creator>chewychewy</dc:creator></item><item><title>RE: data folder permission</title><link>http://www.sqlservercentral.com/Forums/Topic1371906-146-1.aspx</link><description>[quote][b]durai nagarajan (10/12/2012)[/b][hr]as per me no body can access using that logins so how security issue?[/quote] i second here , the above mentioend accesses are given by sql installation , and why any unauthorozed person will go there ,he.she should not have access to that drive too.</description><pubDate>Mon, 15 Oct 2012 00:02:28 GMT</pubDate><dc:creator>Bhuvnesh</dc:creator></item><item><title>RE: data folder permission</title><link>http://www.sqlservercentral.com/Forums/Topic1371906-146-1.aspx</link><description>Hi,Any experts can advise?thanks!</description><pubDate>Sun, 14 Oct 2012 20:20:57 GMT</pubDate><dc:creator>chewychewy</dc:creator></item><item><title>RE: data folder permission</title><link>http://www.sqlservercentral.com/Forums/Topic1371906-146-1.aspx</link><description>this $ users are available in one of my server as well but i havent removed it yet.as per me no body can access using that logins so how security issue?experts clarify if i am wrong.</description><pubDate>Fri, 12 Oct 2012 05:10:38 GMT</pubDate><dc:creator>durai nagarajan</dc:creator></item><item><title>data folder permission</title><link>http://www.sqlservercentral.com/Forums/Topic1371906-146-1.aspx</link><description>Hi,By default installation, SQLServer2005MSSQLuser$&amp;lt;INSTANCENAME&amp;gt;$MSSQLSERVER is having the below access to SQL Server Data folder.Full Control ModifyRead and ExecuteList Folder ContentsReadWriteAuditor highlight that this is a security concern and want us to revoke full control, modify, read and execute and write permission for SQLServer2005MSSQLuser$&amp;lt;INSTANCENAME&amp;gt;$MSSQLSERVER from the data folder.Any idea what is the security risk from security standpoint?Anyone here revoke it before? Any impact on doing it? thanks</description><pubDate>Fri, 12 Oct 2012 00:30:51 GMT</pubDate><dc:creator>chewychewy</dc:creator></item></channel></rss>