Security With Attach DB
In my previous post i have mentioned that any one can physically access the MDF & LDF Files can recreate the database so it is a risk to allow such situation
solution can be concluded in 3 steps :
1- Limit physical access to allowed and authenticated users only
2- Use Windows Authentication(use highly encryption alogrithms) to secure authorization to DB ,this is in case of all the users use built on NT systems else use SQL Server authentication (less secure ,send the user name and password as plain text)
3-Use the EFS to encrypt only MDF Files ,so even any user could get the files they are encrypted and only Recovery Agent (Administrators) can decrypt it
|
Return to Main Page
Comments
|