
About time...
By Wylie Wong
Published: 11 September 2002 08:40 BST
Microsoft is aiming to shore up the security of its SQL Server database management software.
The next version of SQL Server, code-named 'Yukon', will include a long list of new security-related features when it debuts in 2003, said James Hamilton, SQL Server's design architect. He said Microsoft's database team spent more than a month auditing the software code for security holes.
Yukon will include the ability to more easily add security fixes, Hamilton said. Previously, database administrators had to install patches one at a time, a several-step process in which mistakes could be made, he added.
The software will also by default disable public access to all tables, or rows and columns of data, to prevent hackers from taking advantage of openings, Hamilton said. Microsoft has previously disabled public access by default in many scenarios, but it had previously left open access to some information, such as metadata information. Metadata is the definition of the data in the database.
"When a customer installs Yukon, it will be a secure install," Hamilton said. "It's a faster set-up of your system. You don't have to go through and assign security for everything. It's already set, and you can adjust it."
Yukon also gives administrators more far-reaching control over giving people access to specific data. For example, right now a worker can be granted or denied access to see employee information such as names and phone numbers. But with the upcoming software, administrators can go a step further and give employees access to data of only other workers in the same department.
The database security check is part of a company-wide initiative set up by chairman Bill Gates to beef up security in all of Microsoft's products.
The tech giant has long been plagued by glitches and security holes in its software, from Windows to the Internet Explorer browser. And SQL Server has had its share of woes, including a worm attack in May. Databases, which manage information, are prone to attacks by hackers who want corporate or website information such as credit card numbers.
The test version of Yukon is scheduled for release in early 2003, with final shipment slated for late in the year. Other features include support for Microsoft's .Net strategy and increased performance, reliability and manageability.
Wylie Wong writes for News.com
A leading Investment Bank is seeking an intelligent SQL Server DBA to join the team, supporting large numbers of servers and working on various ...
If so A leading employer in Berkshire is currently recruiting for a number of Enterprise Systems Administrators to add to their successful team. ...
Financial client based in South-Wales require an experienced SAS Technician/Consultant to install SAS MA 4.4. The successful candidate must be able ...
CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.
Stories from the web...
Copyright ©1995-2008 CNET Networks, Inc. All rights reserved. Top of page
silicon.com Dear silicon.com... ZX Spectrum nostalgia, Mac attack, tag a bag… Reader Comments of the Week
Steve Ranger Editor's Blog: Home computing from Acorn, Amiga and Amstrad, to the ZX Spectrum Nostalgia 2.0...