|
|
|
SSC Veteran
      
Group: General Forum Members
Last Login: Wednesday, May 15, 2013 3:58 AM
Points: 237,
Visits: 1,753
|
|
The question is, why is it recommended to use separate accounts for different SQL server services?
I have google-ised the question, but failed to find an answer.
|
|
|
|
|
SSCrazy
      
Group: General Forum Members
Last Login: Tuesday, August 10, 2010 5:07 AM
Points: 2,732,
Visits: 23,078
|
|
Here are a few things.
1) If someone happens to get the password for one of the services, it is nice if that does not mean they have the password for all of the services.
2) If a service account has been compromised and is misused, having it only associated with one service reduces the search area to find out what has allowed the breach and possibly who has made the breach.
3) Regular password maintenance will only impact a single service rather than every service.
|
|
|
|
|
SSCrazy
      
Group: General Forum Members
Last Login: Tuesday, August 10, 2010 5:07 AM
Points: 2,732,
Visits: 23,078
|
|
Think of it like physically having a key.
If someone steals your house key, isn't it more secure if they have to steal a second key to get into your office, your car, and your safe? If you happen to lose your key, do you want to have to change every lock you own because the key fits everything?
|
|
|
|
|
SSC Veteran
      
Group: General Forum Members
Last Login: Wednesday, May 15, 2013 3:58 AM
Points: 237,
Visits: 1,753
|
|
|
|
|