25 February,2015 by Tom Collins
Answer: User Account Control (UAC) is a security component that enables users to perform activities as non-administrators (called standard users), and as administrators without having to log off or use Run As.
When a user account is part of the Local Administrator group , in reality the user performs most tasks as a standard user. Separating the non-administrative and administrative tasks , decreases the security risk. Malicious software can exploit UAC being disabled. Malicious software can be installed without any notification
As a DBA discuss with your system administrator the organisation policy regarding UAC
Check the Registry Key
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
If the registry key is set to 0 - it's disabled . 1 - enabled
Or use the GUI
SQL Server - Security Risk Analysis and database security - SQL ...
Database Security Countermeasures against hacker attacks - SQL ...
SQL Server - Database Server Security Audit Process - SQL Server
...
This is only a preview. Your comment has not yet been posted.
As a final step before posting your comment, enter the letters and numbers you see in the image below. This prevents automated programs from posting comments.
Having trouble reading this image? View an alternate.
Posted by: |