WebProWorld Part of WebProNews.com
Page One Link To Us Edit Profile Private Messages Archives FAQ RSS Feeds  
 

Go Back   WebProWorld > Webmaster, IT and Security Discussion > Database Discussion Forum
Subscribe to the Newsletter FREE!


Register FAQ Members List Calendar Arcade Chatbox Mark Forums Read

Database Discussion Forum This is the place to find help resolving those nagging questions you have about implementing and using all kinds of databases. Need help writing a query? Need an opinion on Oracle? Post here!

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 06-06-2007, 06:55 AM
kgun's Avatar
kgun kgun is offline
WebProWorld 1,000+ Club
 

Join Date: May 2005
Location: Norway
Posts: 4,685
kgun RepRank 3kgun RepRank 3
Thumbs up Is MS SQL server the most secure SQL server?

Read more..
Reply With Quote
  #2 (permalink)  
Old 08-07-2007, 06:51 AM
ramsaytom2 ramsaytom2 is offline
WebProWorld New Member
 

Join Date: Aug 2007
Posts: 20
ramsaytom2 RepRank 0
Default Re: Is MS SQL server the most secure SQL server?

Hi

SQL Server is more secure then Mysql. SQL server has the security of SD3 (Secure By design, Secure by development and secure by deployment).
Reply With Quote
  #3 (permalink)  
Old 08-07-2007, 10:04 AM
wige's Avatar
wige wige is offline
Moderator
WebProWorld Moderator
 

Join Date: Jun 2006
Location: United States
Posts: 1,647
wige RepRank 4wige RepRank 4wige RepRank 4
Default Re: Is MS SQL server the most secure SQL server?

No.

A search of the CERT database shows more reported vulnerabilities in MS SQL than MySQL. On the plus side, Oracle seems to be much worse. MySQL being open source also gives it the advantage of community review so that developers and hackers can explore the code and find and patch vulnerabilities before the product ships, reducing the number of vulnerabilities in the final product. But any product, especially one designed to be used on the Internet, will have exploits. The important thing is finding the patches and applying them promptly, as well as ensuring that the application is well protected - direct access to the database is restricted, and all scripts that access the database are secured. I have seen extremely well secured databases that have been wiped out by a user adding a few extra characters to a login screen.
__________________
The best way to learn anything, is to question everything.
Interestingly Average Security Blog
Reply With Quote
  #4 (permalink)  
Old 08-07-2007, 10:41 AM
kgun's Avatar
kgun kgun is offline
WebProWorld 1,000+ Club
 

Join Date: May 2005
Location: Norway
Posts: 4,685
kgun RepRank 3kgun RepRank 3
Default Re: Is MS SQL server the most secure SQL server?

Quote:
Originally Posted by wige View Post
No.
I have seen extremely well secured databases that have been wiped out by a user adding a few extra characters to a login screen.
  1. Extremely well secured?
  2. KW's SQL injection attacks, shared hoster etc.
  3. I am not a specialist, but would apriori think that the Oeacle platform was most secure.
  4. My background: Little Sybase and MySQL, sql database, + database background from ...
Reply With Quote
  #5 (permalink)  
Old 08-07-2007, 10:59 AM
wige's Avatar
wige wige is offline
Moderator
WebProWorld Moderator
 

Join Date: Jun 2006
Location: United States
Posts: 1,647
wige RepRank 4wige RepRank 4wige RepRank 4
Default Re: Is MS SQL server the most secure SQL server?

By well secured I mean the database had all the latest patches, remote connections were blocked via the firewall, the access passwords were changed regularly - all of which didn't matter because of a flaw in a web site script.
__________________
The best way to learn anything, is to question everything.
Interestingly Average Security Blog
Reply With Quote
  #6 (permalink)  
Old 08-07-2007, 11:12 AM
kgun's Avatar
kgun kgun is offline
WebProWorld 1,000+ Club
 

Join Date: May 2005
Location: Norway
Posts: 4,685
kgun RepRank 3kgun RepRank 3
Default Re: Is MS SQL server the most secure SQL server?

Related SP thread:

? about p74 of Sitepoint db book
Reply With Quote
Reply

  WebProWorld > Webmaster, IT and Security Discussion > Database Discussion Forum
Tags: most, secure, server, sql



Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Making my web server secure JimmiJames Internet Security Discussion Forum 2 06-24-2006 05:16 AM
Power up your Server; world's first vegetable powered server TrafficProducer Breakroom (General: Any Topic) 3 12-21-2005 02:58 PM
Is The Windows Server Environment More Secure Than Linux? Chris Internet Security Discussion Forum 10 04-04-2005 04:58 PM
URGENT: need secure host/server....please read: tj Internet Security Discussion Forum 6 12-30-2004 08:59 PM
Post images in a secure server Importville Internet Security Discussion Forum 1 07-24-2004 12:48 PM


Search Engine Friendly URLs by vBSEO 3.0.0