|
|
|
Mr or Mrs. 500
      
Group: General Forum Members
Last Login: Wednesday, May 01, 2013 6:14 AM
Points: 592,
Visits: 1,423
|
|
*muttermuttermutter* I knew the correct answer. And I somehow picked the wrong one when I submitted it.
Thanks for a very good question - people often don't pay attention to their assumptions when they are dealing with security issues like this.
-Ki
|
|
|
|
|
SSCoach
         
Group: General Forum Members
Last Login: Thursday, May 16, 2013 1:46 PM
Points: 18,732,
Visits: 12,329
|
|
|
|
|
|
SSCertifiable
       
Group: General Forum Members
Last Login: Yesterday @ 6:38 PM
Points: 7,077,
Visits: 7,116
|
|
Steve Jones - SSC Editor (6/9/2011) Glad you liked it. Not sure you can read much into the distribution since it might be a guess for many of the correct answers. This wasn't to try and trick people, but either you know it or you don't, and if not, you learn. Well, the score now is 411 right, 347 wrong. The probability of getting that close to a 50-50 split if everyone thought they were just guessing (eg by tossing a fair coin to get their guess) is under 0.07 if my mental arithmetic is still up to scratch. Of course that doesn't really tell us anything about how much guessing there was, but it makes me think that maybe a lot of people thought they knew the answer (and about half of them were wrong), so that the split amonst those actually guessing was rather wider than 54%-46%. Anyway, it's a good question that points out a wee hole in security - you can use TDE on the distribution and subscriber databases, but it will still be in clear as it passes between the servers so you will need to encrypt their connection if you want to be really secure.
Tom Que conclure à la fin de tous mes longs propos? C'est que les préjugés sont la raison des sots. (Voltaire, 1756)
|
|
|
|
|
SSCrazy
      
Group: General Forum Members
Last Login: Thursday, May 16, 2013 3:34 PM
Points: 2,170,
Visits: 3,582
|
|
[b]Anyway, it's a good question that points out a wee hole in security - you can use TDE on the distribution and subscriber databases, but it will still be in clear as it passes between the servers so you will need to encrypt their connection if you want to be really secure.
Excellent point Tom.
Mohammed Moinudheen
|
|
|
|
|
SSCrazy Eights
        
Group: General Forum Members
Last Login: 2 days ago @ 6:54 AM
Points: 9,364,
Visits: 6,462
|
|
|
|
|
|
Mr or Mrs. 500
      
Group: General Forum Members
Last Login: Friday, March 15, 2013 10:35 AM
Points: 594,
Visits: 654
|
|
Very important question, thanks Steve!
I was unaware that the data was decrypted before being replicated, although it makes perfect sense. Time to revisit 2 projects :/
Lots of moving parts to think about and I feel terrible about not knowing this one. Should have read Technet on TDE before setting up replication since it IS mentioned in the TDE article...
Keep those coming!!
Peter Trast Microsoft Certified ...(insert many literal strings here) Microsoft Design Architect with Alexander Open Systems
|
|
|
|