Solved

SQL Server Database and table structure prevent unauthorized access

Posted on 2011-03-03
2
341 Views
Last Modified: 2012-08-13
Is there a way to prevent unauthorized access or even to view the table structure in a hosting server.
0
Comment
Question by:MadhuMenong
2 Comments
 
LVL 142

Expert Comment

by:Guy Hengel [angelIII / a3]
ID: 35027679
the hosting provider has DBA access to the db, so those people basically can see anything in your database (and you have no means to block that).

so, if it really has to be blocked to "anybody", don't "host" your database on a normal (web) hosting provider.
0
 
LVL 39

Accepted Solution

by:
lcohan earned 500 total points
ID: 35028521
Aside of the hosting people that would have access to your server and implicit database, you should implement your own security model and you can read details about how to do that at the links below and I suggest and recommend create standard database role(s), then assign minimum rights on your DB objects to the role(s) and add user sql logins to the standard database role:

http://www.google.ca/url?sa=t&source=web&cd=1&ved=0CBkQFjAA&url=http%3A%2F%2Fdownload.microsoft.com%2Fdownload%2F8%2F5%2Fe%2F85eea4fa-b3bb-4426-97d0-7f7151b2011c%2FSQL2005SecBestPract.doc&ei=dr5vTZ3mLMaitgfIvpH-Dg&usg=AFQjCNFv2JoFJvPxIp1ArMuUJQSSwKKC4g

http://www.sqlsecurity.com/FAQs/SQLSecurityChecklist/tabid/57/Default.aspx

As you didn't mentioned what SQL server you are using please select the appropriate 200/2005/2008


0

Featured Post

IT, Stop Being Called Into Every Meeting

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
Noob question:this site is sql vulns? 2 46
Ranking Based On Value 3 29
SQL Script to find duplicates 16 20
sql query Help 12 33
In this article—a derivative of my DaytaBase.org blog post (http://daytabase.org/2011/06/18/what-week-is-it/)—I will explore a few different perspectives on which week today's date falls within using Microsoft SQL Server. First, to frame this stu…
JSON is being used more and more, besides XML, and you surely wanted to parse the data out into SQL instead of doing it in some Javascript. The below function in SQL Server can do the job for you, returning a quick table with the parsed data.
Via a live example, show how to shrink a transaction log file down to a reasonable size.
Viewers will learn how to use the INSERT statement to insert data into their tables. It will also introduce the NULL statement, to show them what happens when no value is giving for any given column.

760 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

16 Experts available now in Live!

Get 1:1 Help Now