SQL Server Security - Firewalls etc

From: David Crone (david.crone_at_currieb.ie)
Date: 06/08/05

  • Next message: Ross Presser: "Re: Application Role"
    Date: Wed, 08 Jun 2005 05:08:43 -0700
    
    

    Hi there

    We have a product that we want to set up for clients that will allow
    them to run the application, that will (using supplied SQL Server
    credentials) go out onto the web to access a SQL Server DB located
    elsewhere.

    Are there any issues with opening SQL Ports on the CLIENT's network, if
    the SQL Server instance (MSDE) is located on the user's laptop, and the
    company does not have SQL Server on the Firewall PC, and has no
    Redirects etc set up on the firewall to send SQL traffic to some PC?

    The way I understand it is that all modern firewalls block all traffic
    that is not expected if the traffic originates outside the corporate
    network, BUT the traffic knows how to get back to the client PC behind
    the firewall IF the Client behind the firewall originated the request;
    so there should be no security issues opening SQL Server ports on the
    firewall in this case, as we ONLY need OUTGOING connections to a SQL
    Server DB located on a web-hoster.

    Any comments or advice on this topic?

    Thanks in advance
    David Crone

    *** Sent via Developersdex http://www.developersdex.com ***


  • Next message: Ross Presser: "Re: Application Role"

    Relevant Pages

    • SQL Server client ports and configuring the client firewall - Is this crap??
      ... worried about opening port 1433 because they have a local SQL Server). ... on the client, it doesn't matter what the winsock protocol says. ... If the client has to live with this situation with the firewall then can ...
      (comp.security.firewalls)
    • SQL Server client ports and configuring the client firewall - Is this crap??
      ... worried about opening port 1433 because they have a local SQL Server). ... on the client, it doesn't matter what the winsock protocol says. ... If the client has to live with this situation with the firewall then can ...
      (comp.os.ms-windows.nt.admin.security)
    • Re: Connectivity Issues - Bizzare
      ... Sounds like firewall to me. ... >I am trying to connect to a default instance of SQL Server 2000 Enterprise ... I create a SqlDataAdapter on the web form, ... I take the same connection string from the web app, ...
      (microsoft.public.sqlserver.connect)
    • Re: I have a matter with symantec enterprise firewall
      ... A SQL Server exposed to the Internet at large? ... Symantec Enterprise ... must, put the PRODUCTION SQL Server outside the enterprise firewall (i.e., ...
      (comp.security.firewalls)
    • Re: SQL Server / Firewall Security
      ... Below is a link to the thread Denny referred to. ... SQL Server MVP ... > database for us to search the similar help. ... >>> can be any type of firewall not necessarily ISA, ...
      (microsoft.public.sqlserver.security)