[dba-SQLServer] Re: Security & encryption

Stuart McLachlan stuart at lexacorp.com.pg
Tue May 10 17:29:29 CDT 2005


On 10 May 2005 at 9:47, Francisco Tapia wrote:

> So data would only be as safe as the user's memory for their Pwd. So 
> Technically the entire columns or rows could be encrypted within the sproc 
> and the user's choice of pwd but also w/o storing the pwd used. 
> 
> Thinking more technically on this, the entire HR dept would need access to 
> these screens right? or a certain number of people in HR would need access, 
> thus 2 or more people would possibly know the pwd, possibly writting it down 
> in a memo pad and end up storing it under their keyboard... :|
> 

Yep, wetware is always the weakest component in security matters.

-- 
Stuart





More information about the dba-SQLServer mailing list