Well, my point of view is that SYSDBA should not to exist at all. Any
hacker knows: "there is a SYSDBA superuser, I just need to get the password
now"

At installation time or first run of GSEC the user should have the option
of choice the name and the password of the superuser. Both of them.

Security would be greater then.

Greetings.

Walter.




On Wed, Jul 15, 2015 at 6:24 AM, Dmitry Yemanov <firebi...@yandex.ru> wrote:

> 15.07.2015 13:14, Alex Peshkoff wrote:
>
> > I worry more about SQL-based management. Creating first user is required
> > step not only for initializing security3.fdb, it's also required when
> > new security database (non-default) is to be added to the server. May be
> > play this trick if an explicit user switch is not provided (i.e. OS user
> > name is used) in embedded attachment and an attempt is made to add
> > SYSDBA in any case, not only in gsec?
>
> Maybe, but we should not limit the solution to SYSDBA only. If someone
> wants to avoid SYSDBA at all and initialize the security database with
> gsec -add mydba -pw mypassword [s]he should not specify -user sysdba
> either (it does not exist and hence looks weird too).
>
>
> Dmitry
>
>
>
> ------------------------------------------------------------------------------
> Don't Limit Your Business. Reach for the Cloud.
> GigeNET's Cloud Solutions provide you with the tools and support that
> you need to offload your IT needs and focus on growing your business.
> Configured For All Businesses. Start Your Cloud Today.
> https://www.gigenetcloud.com/
> Firebird-Devel mailing list, web interface at
> https://lists.sourceforge.net/lists/listinfo/firebird-devel
>
------------------------------------------------------------------------------
Don't Limit Your Business. Reach for the Cloud.
GigeNET's Cloud Solutions provide you with the tools and support that
you need to offload your IT needs and focus on growing your business.
Configured For All Businesses. Start Your Cloud Today.
https://www.gigenetcloud.com/
Firebird-Devel mailing list, web interface at 
https://lists.sourceforge.net/lists/listinfo/firebird-devel

Reply via email to