Re: Check master ..Sp_password for trojan procedures

From: Sue Hoegemeier (Sue_H@nomail.please)
Date: 07/23/02


From: Sue Hoegemeier <Sue_H@nomail.please>
Date: Tue, 23 Jul 2002 13:49:08 -0600


I guess it depends on what works best for you. You can
always install SQL Server and whatever service packs,
security patches you are running on production and then
compare the newly installed version of sp_password to the
version you have in production.
You primarily want to watch for changes which indicate that
password changes are being logged or sent somewhere - file,
some odd table, sent via email, whatever.
Red Gate has a database compare tool if you wanted to
incorporate that: http://www.red-gate.com/

-Sue

On Tue, 23 Jul 2002 10:20:24 -0700, "Rajesh Chaturvedi"
<chaturve@awii.com> wrote:

>Hi,
>
>In the SQL*SERVER security checklist following points are
>not clear
>
>1) Check master ..Sp_password for trojan procedures. It
>says compare your production scripts to default script on
>a fresh installation and keep that code handy.
>
>How do I go about doing this. Are there any step wise
>procedures for this.
>
>I will really appreciate your help.
>
>Regards,
>
>Raj
>.
>



Relevant Pages

  • unsubmit
    ... Using a development server also [Roberto ... Can't find cable Internet connec [Roberto ... You can fix that manually by 'apt-get install ... > development machine, so if the production server goes down, we can ...
    (Debian-User)
  • Re: Major Version Upgrade - 4.11 to 5.x
    ... support) for you to upgrade? ... It is a general rule of thumb to do a clean install between ... > Other than the obvious advice to start with a good backup, ... leave the production system running and begin the ...
    (freebsd-questions)
  • Re: Installation of a test server - licensing requirements
    ... production but only to test new technologies and modifications to the ISA ... Is it allowable to do an install of ... SBS on a system that will not be used as a production system? ... server setup and do this - so that would be a solution. ...
    (microsoft.public.windows.server.sbs)
  • applying latest and greatest recommended 8 cluster
    ... been deploying servers into production over the past year with ... install the maintenance update 7. ... Solaris 8 2/02 s28s_u7wos_08a SPARC ...
    (SunManagers)
  • Re: [PHP] Re: Most stable combination of AMP?
    ... I'm trying to setup a dev environment using Apache, ... The production environment will most likely live on a Linux machine. ... Personally, I recommend Fedora - it's easy to install, and you can use ... it's oftentimes better to compile and install packages from scratch as many compile-time options will increase performance for your particular hardware and allow customization. ...
    (php.general)