Security

Technical Article

Managing the "Surface Area" of SQL Server 2005

  • Article

As every developer knows by now, Microsoft has focused renewed attention on security in recent product releases. One of the important concepts in this effort is surface area. Roughly speaking, a piece of software has a smaller surface area if there are fewer ways to attack it: fewer open ports, fewer APIs, fewer protocols, and so on. OSQL Server 2005 takes this concept to the next level by letting you explicitly manage the software's surface area.

You rated this post out of 5. Change rating

2005-04-21

3,226 reads

Technical Article

SQL Server 2005 Security - Part 4

  • Article

In this article, we will conclude our coverage of security related changes in SQL Server 2005 Beta 2 (although we will continue discussion of improvements in other functionality areas throughout the reminder of this series). The topics we will focus on here are code and module signing, modifications of SQL Server Agent and SQL Profiler operations, as well as monitoring and auditing changes.

(1)

You rated this post out of 5. Change rating

2005-03-23

2,123 reads

Technical Article

SQL Server 2000 Security - Part 6 - Ownership and Object Permissions

  • Article

We have described, so far, authorization based on a predefined fixed server (determining a set of SQL server-wide privileges) and database (applying to database objects and activities) roles. We have also discussed application roles, which makes the level of permissions independent of those assigned to a SQL Server login or a database user account. Now it is time to look into permissions from the point of view of database objects. There are two main factors that play a role in determining how access rights to them are evaluated - their ownership and custom permissions. We will discuss the first one of these topics in this article and will continue with the other one in the next installment of this series.

You rated this post out of 5. Change rating

2005-03-22

2,349 reads

SQLServerCentral Article

Securing SQL Backups

  • Article

SQL Server does many things very well, but securing itself is not one of them. While securing your server requires some effort, there is an area that many people forget. Securing your backups! Brian Kelley, our resident security expert, brings some advice and ideas for ensuring your data will not be stolen.

You rated this post out of 5. Change rating

2005-03-21

9,065 reads

Technical Article

SQL Server 2005 Security - Part 3 Encryption

  • Article

After discussing authentication and authorization behavior of SQL Server 2005 Beta 2 in the previous two articles of this series, it is time to look into other security-related changes. In particular, we will focus on the freshly introduced native database encryption capabilities. While some encryption functionality existed in the previous versions (e.g. involving column encryption APIs within User Defined Functions or PWDENCRYPT password one-way hash function), it was relatively limited and rarely used. SQL Server 2005 provides significant improvements in this area.

You rated this post out of 5. Change rating

2005-03-09

3,566 reads

Blogs

Creating a Local Model Chatbot on Windows

By

After my session at VSLive last week, I had a few questions from the...

To refer and to be referred

By

Referrals have never been more important in the job market. They’re no longer nice...

A New Word: Dorgone

By

dorgone– adj. wondering if you could slip away from an event or group conversation...

Read the latest Blogs

Forums

Querying Multiple Tables for the Same Information

By RedSoxRay

I have about 100 Tables that are all suffixed with _Modify. These tables record...

Make It Routine

By Steve Jones - SSC Editor

Comments posted to this topic are about the item Make It Routine

Finding Gaps in Sequential Data Using SQL Server

By Imran2629

Comments posted to this topic are about the item Finding Gaps in Sequential Data...

Visit the forum

Question of the Day

Negative and Positive Numbers

If I want to know whether a number of negative, positive, or zero, what is the easiest way to get this in T-SQL?

See possible answers