Home | Contact Us | FAQ | Search & Site Map | Link to Us
Sign In | Join | Other 45 Sites in Network
Home
Discussion Groups
DB Engine
SQL ServerMSDESQL Server CE
Services
Analysis (Data Mining)Analysis (OLAP)DTSIntegration ServicesNotification ServicesReporting Services
Programming
CLRConnectivitySQLXML
Other Technologies
ClusteringEnglish QueryFull-Text SearchReplicationService Broker
General
Data WarehousingPerformanceSecuritySetupSQL Server ToolsOther SQL Server Topics
DirectoryUser Groups
Related Topics
MS AccessOther DB ProductsMS Server Products.NET DevelopmentVB DevelopmentJava DevelopmentMore Topics ...

SQL Server Forum / General / Security / October 2005

Tip: Looking for answers? Try searching our database.

SQL Server 2005 encryption with Smart Card certificates

Thread view: 
Enable EMail Alerts  Start New Thread
Thread rating: 
Kalle Launiala - 30 Oct 2005 14:44 GMT
Hi!

Our problem domain focuses around confidential development time/test data
from the clients. This data potentially includes very critical business value
data, so thorough protection of it is required.

This problem requires protection also in case of physical theft of the
server hardware. In other words, the encryption keys/secrets shouldn't have
to be in any unencrypted form on the server drives.

Our current solution is based on 3rd party virtual private disk product,
that allows mounting the drives using Smart Card certificates. This way we
can plug in the card during manual startup phases after the boot, mount the
drives and start the respective services (such as database servers) after
that on those encrypted drives.

Now after the introduction of encryption features of SQL Server 2005, we
want to evaluate their possibilities properly. We are going to evaluate the
feature set for our client's possible needs, regardless whether the features
help us to solve our own security requirements or not.

Possible and acceptable solutions would also be, if encrypted databases
could be "manually mounted" in a way that the encryption key(s) are provided
in the time of mounting and are only valid during the current runtime
environment; thus not stored anywhere on the server.

I wasn't yet able to find proper source of information about SQL Server 2005
encryption features, so figured to ask here. If there was some advanced
specification of the encryption support in SQL Server 2005, I'd be very glad
to simply find the source and read it all up myself from there.

I hope I cleared up the problem domain enough.

Best regards,

Kalle
m.bohse@quest-consultants.com - 31 Oct 2005 14:09 GMT
Maybe this articles can help you:
http://www.microsoft.com/technet/prodtechnol/sql/2005/multisec.mspx
http://msdn.microsoft.com/SQL/2005/enterprise/default.aspx?pull=/msdnmag/issues/
05/06/sqlserversecurity/toc.asp


M
 
Sign In
Join
My Latest Posts
My Monitored Threads
My Blog
My Photo Gallery
My Profile
My Homepage

Start New Thread
Enable EMail Alerts
Rate this Thread



©2008 Advenet LLC   Privacy Policy - Terms of Use
This website includes both content owned or controlled by Advenet as well as content owned or controlled by third parties.