Named Pipe and Clustering

From: Alex (alim_at_rogers.com)
Date: 12/11/03

  • Next message: Kevin McDonnell [MSFT]: "Re: ASP.NET Forms Authentication Via A SQL Server Database With Windows User types?"
    Date: Thu, 11 Dec 2003 12:03:10 -0500
    
    

    Hi,

    I need to disable named pipes in a SQL Cluster environment (Windows 2000 and
    SQL 2000 latest SP). Here is the scenario:

    Our security policy requires me to secure my production SQL Server (Virtual
    SQL Cluster name=SQL01) by disabling any access to SQL Server except access
    from application server. I implemented this security in UAT (Non clustered )
    by creating an IPSEC filter and disabling Named Pipes on SQL Server. In one
    IPSEC filter, All IP Traffic to port 1433 is blocked. In another filter,
    traffic from application server IP Address is permitted. This configuration
    worked fine in UAT.

    When I promoted the same IPSEC policy to production (both nodes
    active-passive), I noticed that I can't disable Named Pipes in cluster
    environment. Is there any work around this?

    Can I change default pipe for Named Pipe in order to block SQL connections
    coming from default pipe?
    Do you have any better suggestion to secure SQL Server?

    Thanks


  • Next message: Kevin McDonnell [MSFT]: "Re: ASP.NET Forms Authentication Via A SQL Server Database With Windows User types?"

    Relevant Pages

    • Re: Domain/workgroup Server Configuration Issues
      ... spare machines for that) separated from a SQL cluster that is on a domain. ... "The SQL Server 'x.x.x.x' cannot be used with the SSO Administrator ... When I try to configure the Enterprise Single Sign-On Service account, ...
      (microsoft.public.biztalk.general)
    • SQL Clustering and Named Pipe
      ... SQL 2000 latest SP). ... Our security policy requires me to secure my production SQL Server (Virtual ... SQL Cluster name=SQL01) by disabling any access to SQL Server except access ... I noticed that I can't disable Named Pipes in cluster ...
      (microsoft.public.sqlserver.security)
    • Production SQL server down!!!
      ... Someone attempted to change the partition layout of our SQL cluster, ... SQL Server could not spawn FRunCM thread. ...
      (microsoft.public.sqlserver.clustering)
    • Re: Access 2007->SQL Server2005 "connection was forcibly closed",G
      ... I moved every table I was able to move to the SQL ... closed connections - but all of these errors are in the version which used ... the SQL Server 2000 and everything worked ... communication between ODBC (OLEDB and Native Client, ...
      (microsoft.public.sqlserver.connect)
    • Re: Unable to Apply SP4 to SQL 2000 Cluster (new Node)
      ... Rebuild the node in the failover cluster. ... Scenario 1" in SQL Server 2000 Books Online. ... This setup process updates to SP4 only the binaries on the new ...
      (microsoft.public.sqlserver.clustering)

  • Quantcast