Re: How secure is MS SQL Server 2000?

From: Rob R. Ainscough (robains_at_pacbell.net)
Date: 08/17/05


Date: Wed, 17 Aug 2005 08:23:40 -0700

So I can build databases remotely. Also in some cases the SQL servers are
not all on the same LAN as the Web Server so my web server code will need to
access other remote SQL servers. Isn't this common practice for web apps
that use more than one SQL server?

Rob.

"Dejan Sarka" <dejan_please_reply_to_newsgroups.sarka@avtenta.si> wrote in
message news:%23fM1x7uoFHA.3316@tk2msftngp13.phx.gbl...
> If you are afraid of SQL Slammer, then it is not a problem - it was
> resolved with SP3 already. Still, you should check why you need SQL Server
> open to public.
>
> --
> Dejan Sarka, SQL Server MVP
> Associate Mentor
> www.SolidQualityLearning.com
>
> "Rob R. Ainscough" <robains@pacbell.net> wrote in message
> news:ewoCwruoFHA.3380@TK2MSFTNGP12.phx.gbl...
>>I have a client that does not want to open Port 1433 (default for SQL
>>Server). Is MS SQL Server 2000 SP4 still vulnerable to having this port
>>open to the public?
>>
>> Thanks, Rob.
>>
>
>



Relevant Pages

  • RE: Problems with WebParts
    ... to a database called aspnetdb. ... > The connection string specifies a local SQL Server Express instance using a ... > server account must have read and write access to the applications directory. ... > This is necessary because the web server account will automatically create ...
    (microsoft.public.dotnet.framework.aspnet)
  • Re: Remote development advice
    ... We are using IIS as the web server. ... The IIS and SQL Server is setup in his ... I want to be able to access the pages that my friend has done remotely ... Then whichever web site he has configured as the default site on IIS should appear, assuming the web server was configured correctly. ...
    (microsoft.public.dotnet.general)
  • Re: SQL2K WIN2K3 CONNECTION SECURITY
    ... My own benchmarking indicates that TCP/IP is faster than named pipes. ... the benchmark stats as the starting point... ... Perfmon and SQL Server Profiler along with SQL Server Query Analyser. ... encrypted on the web server. ...
    (microsoft.public.security)
  • Re: Where to place SQL Server DMZ, LAN etc.
    ... impossible to ever enter into your LAN. ... However, if you expose any critical data to the web, you risk your SQL ... > I'm trying to determine the best place to locate a SQL Server that will be ... > second card to the Web Server that has an internal IP? ...
    (microsoft.public.sqlserver.security)
  • Re: middle tier recommendations
    ... if you can get your hands on the SQL Server SDK from SQL ... That depends on the amount of use that interface will get. ... is scalable, you can put your app, with DLLs, on any web server without ... Most common reason is running IIS 6 in IIS 5 Compatibility mode. ...
    (microsoft.public.dotnet.framework)