that's what I thought. I guess I'm going to recommend what you guys
suggested: Straight ADO db connection with SQL Srever mirroring. But what to
hec to do with that connections string... is there any way to secure it
enough whitin the application on user machine to convince them? Or maybe
retrieve connection string with web service?
"Andrew J. Kelly" <sqlmvpnooospam@.shadhawk.com> wrote in message
news:OifLlSQHIHA.4112@.TK2MSFTNGP05.phx.gbl...
> Well that depends on what you are doing. Asynchronous access to a database
> is not very useful for most user applications. If you are only talking
> about SQL Server as a back end to an app that just needs to load data such
> as a logging process this may be fine. But if it is a user interface app
> and the user expects to see data back these techniques don't work well.
> Don't get me wrong things like Service Broker have a definite place and
> work great for what they were designed to do. But you can't front end a
> database server with these tools and expect them to work like a database
> server. I just got off a large project where we had to completely rewrite
> an app that made extensive use of web services because it couldn't scale
> as written and simply was the wrong tool for the job in this case.
> Management needs to define what their goals are first and then decide what
> the best tools for the job are, not the other way around.
> --
> Andrew J. Kelly SQL MVP
> Solid Quality Mentors
>
> "Andy" <kc2ine@.yahoo.com> wrote in message
> news:%23y6juKOHIHA.4880@.TK2MSFTNGP03.phx.gbl...
>
Now we didn't really recommend anything since we don't know your actual
requirements. Why not use Windows authentication and you don't have to worry
about showing any sensitive data.
Andrew J. Kelly SQL MVP
Solid Quality Mentors
"Andy" <kc2ine@.yahoo.com> wrote in message
news:uLB18nQHIHA.4196@.TK2MSFTNGP04.phx.gbl...
> that's what I thought. I guess I'm going to recommend what you guys
> suggested: Straight ADO db connection with SQL Srever mirroring. But what
> to hec to do with that connections string... is there any way to secure it
> enough whitin the application on user machine to convince them? Or maybe
> retrieve connection string with web service?
> "Andrew J. Kelly" <sqlmvpnooospam@.shadhawk.com> wrote in message
> news:OifLlSQHIHA.4112@.TK2MSFTNGP05.phx.gbl...
>
|||Andy,
I suggest taking the secure road here. Yes, the connection string is a
key to SQL Server content--it can unlock the door to the entire server and
all of its data or to a single closet that contains just the data your
application needs. I suggest the latter as a security strategy. The
ConnectionString is not going to be visible to the end user unless you give
them the source code. Yes, there are programs to decompile the program, but
those are easily defeated with a couple of techniques. There are also ways
to encrypt the ConnectionString supported in VS 2005. However, if the
ConnectionString credentials only grant access to the few stored procedures
or views that are used by the application, the exposure is minimal. Of
course, this assumes that the application is written using this approach.
I would be available to come talk to your management team about this and
other related issues. We could even do this over a conference call.
hth
____________________________________
William (Bill) Vaughn
Author, Mentor, Consultant, Dad, Grandpa
Microsoft MVP
INETA Speaker
www.betav.com
www.betav.com/blog/billva
Please reply only to the newsgroup so that others can benefit.
This posting is provided "AS IS" with no warranties, and confers no rights.
__________________________________
Visit www.hitchhikerguides.net to get more information on my latest book:
Hitchhiker's Guide to Visual Studio and SQL Server (7th Edition)
and Hitchhiker's Guide to SQL Server 2005 Compact Edition (EBook)
------
"Andy" <kc2ine@.yahoo.com> wrote in message
news:uLB18nQHIHA.4196@.TK2MSFTNGP04.phx.gbl...
> that's what I thought. I guess I'm going to recommend what you guys
> suggested: Straight ADO db connection with SQL Srever mirroring. But what
> to hec to do with that connections string... is there any way to secure it
> enough whitin the application on user machine to convince them? Or maybe
> retrieve connection string with web service?
> "Andrew J. Kelly" <sqlmvpnooospam@.shadhawk.com> wrote in message
> news:OifLlSQHIHA.4112@.TK2MSFTNGP05.phx.gbl...
>
Showing posts with label straight. Show all posts
Showing posts with label straight. Show all posts
Friday, March 23, 2012
Monday, February 20, 2012
MSDTC and W2K3
I've read about a thousand different things and really need a straight answer:
I'm setting up clustering on a dual-node W2K3 cluster.
If the applications that are accessing the SQL Server DO NOT utilize MSDTC,
do I need to even bother with creating the group, resources, etc. for MSDTC?
If I still need to create it, exactly what is the Network Resoource name:
just some random name I make up or is it something specific?
And doesn't SQL Server install create those anywway?
Thanks for any help you can provide.
Anthony
SQL does not require MSDTC, if you app does not use it, don't install it.
Cheers,
Rod
MVP - Windows Server - Clustering
http://www.nw-america.com - Clustering
http://msmvps.com/clustering - Blog
"A. Robinson" <A. Robinson@.discussions.microsoft.com> wrote in message
news:6B0E7A37-47B3-475D-81AE-FE0C4E49E900@.microsoft.com...
> I've read about a thousand different things and really need a straight
> answer:
> I'm setting up clustering on a dual-node W2K3 cluster.
> If the applications that are accessing the SQL Server DO NOT utilize
> MSDTC,
> do I need to even bother with creating the group, resources, etc. for
> MSDTC?
> If I still need to create it, exactly what is the Network Resoource name:
> just some random name I make up or is it something specific?
> And doesn't SQL Server install create those anywway?
> Thanks for any help you can provide.
> Anthony
|||Thank you!!! Was going nuts trying to convince people it didn't need to be
there if you don't use it...
"Rodney R. Fournier [MVP]" wrote:
> SQL does not require MSDTC, if you app does not use it, don't install it.
> Cheers,
> Rod
> MVP - Windows Server - Clustering
> http://www.nw-america.com - Clustering
> http://msmvps.com/clustering - Blog
> "A. Robinson" <A. Robinson@.discussions.microsoft.com> wrote in message
> news:6B0E7A37-47B3-475D-81AE-FE0C4E49E900@.microsoft.com...
>
>
|||If you won't be using it heavily, I would still set it up using in the
cluster group using the Quorum disk. I personally have had zero success
installing a clustered SQL 2000 without MSDTC.
Geoff N. Hiten
Microsoft SQL Server MVP
Senior Database Administrator
Careerbuilder.com
I support the Professional Association for SQL Server
www.sqlpass.org
"A. Robinson" <ARobinson@.discussions.microsoft.com> wrote in message
news:EEB3C7D5-974C-4CDB-9C82-69230336BA96@.microsoft.com...[vbcol=seagreen]
> Thank you!!! Was going nuts trying to convince people it didn't need to be
> there if you don't use it...
> "Rodney R. Fournier [MVP]" wrote:
it.[vbcol=seagreen]
name:[vbcol=seagreen]
|||Really? We have 20 of them. They all work great.
Cheers,
Rod
MVP - Windows Server - Clustering
http://www.nw-america.com - Clustering
http://www.msmvps.com/clustering - Blog
"Geoff N. Hiten" <SQLCraftsman@.gmail.com> wrote in message
news:%23Qim8SkJFHA.3340@.TK2MSFTNGP14.phx.gbl...
> If you won't be using it heavily, I would still set it up using in the
> cluster group using the Quorum disk. I personally have had zero success
> installing a clustered SQL 2000 without MSDTC.
> --
> Geoff N. Hiten
> Microsoft SQL Server MVP
> Senior Database Administrator
> Careerbuilder.com
> I support the Professional Association for SQL Server
> www.sqlpass.org
> "A. Robinson" <ARobinson@.discussions.microsoft.com> wrote in message
> news:EEB3C7D5-974C-4CDB-9C82-69230336BA96@.microsoft.com...
> it.
> name:
>
|||While SQL Server does not require MS DTC, MS DTC on a cluster is only
supported when clustered and it is recommended to cluster it.
When clustering MS DTC it is preferred to have it in its own group with its
own resources, your second choice should be to put it in the cluster group,
use the quorum disk and create MS DTC its own Network Name and IP Address
resources for your MSDTC resource to use and set that resources properties
not to affect the group.
Here are some KB articles on correctly setting this up:
301600 How to configure Microsoft Distributed Transaction Coordinator on a
http://support.microsoft.com/?id=301600
817064 How to enable network DTC access in Windows Server 2003
http://support.microsoft.com/?id=817064
Also this article which may be of interest:
817065 How To Enable Network COM Access in Windows Server 2003
http://support.microsoft.com/?id=817065
Dave Whitney
SQL Support
|||Agreed, since we use SQL clusters without MSDTC, we disable the default
windows service for it.
Cheers,
Rod
MVP - Windows Server - Clustering
http://www.nw-america.com - Clustering
http://www.msmvps.com/clustering - Blog
"Dave Whitney [MS]" <dwhitneyOnline@.microsoft.com> wrote in message
news:FEBotroJFHA.132@.TK2MSFTNGXA02.phx.gbl...
> While SQL Server does not require MS DTC, MS DTC on a cluster is only
> supported when clustered and it is recommended to cluster it.
> When clustering MS DTC it is preferred to have it in its own group with
> its
> own resources, your second choice should be to put it in the cluster
> group,
> use the quorum disk and create MS DTC its own Network Name and IP Address
> resources for your MSDTC resource to use and set that resources properties
> not to affect the group.
> Here are some KB articles on correctly setting this up:
> 301600 How to configure Microsoft Distributed Transaction Coordinator on a
> http://support.microsoft.com/?id=301600
> 817064 How to enable network DTC access in Windows Server 2003
> http://support.microsoft.com/?id=817064
> Also this article which may be of interest:
> 817065 How To Enable Network COM Access in Windows Server 2003
> http://support.microsoft.com/?id=817065
> Dave Whitney
> SQL Support
>
|||Well, we have been scared by the recommended best practices into submission,
and simply sucked in and coughed up a separate disk for the MSDTC resource.
(I'm not talking about whether the MSDTC resource should or should not be
configured. It should in our environments.)
Linchi
"Dave Whitney [MS]" <dwhitneyOnline@.microsoft.com> wrote in message
news:FEBotroJFHA.132@.TK2MSFTNGXA02.phx.gbl...
> While SQL Server does not require MS DTC, MS DTC on a cluster is only
> supported when clustered and it is recommended to cluster it.
> When clustering MS DTC it is preferred to have it in its own group with
> its
> own resources, your second choice should be to put it in the cluster
> group,
> use the quorum disk and create MS DTC its own Network Name and IP Address
> resources for your MSDTC resource to use and set that resources properties
> not to affect the group.
> Here are some KB articles on correctly setting this up:
> 301600 How to configure Microsoft Distributed Transaction Coordinator on a
> http://support.microsoft.com/?id=301600
> 817064 How to enable network DTC access in Windows Server 2003
> http://support.microsoft.com/?id=817064
> Also this article which may be of interest:
> 817065 How To Enable Network COM Access in Windows Server 2003
> http://support.microsoft.com/?id=817065
> Dave Whitney
> SQL Support
>
I'm setting up clustering on a dual-node W2K3 cluster.
If the applications that are accessing the SQL Server DO NOT utilize MSDTC,
do I need to even bother with creating the group, resources, etc. for MSDTC?
If I still need to create it, exactly what is the Network Resoource name:
just some random name I make up or is it something specific?
And doesn't SQL Server install create those anywway?
Thanks for any help you can provide.
Anthony
SQL does not require MSDTC, if you app does not use it, don't install it.
Cheers,
Rod
MVP - Windows Server - Clustering
http://www.nw-america.com - Clustering
http://msmvps.com/clustering - Blog
"A. Robinson" <A. Robinson@.discussions.microsoft.com> wrote in message
news:6B0E7A37-47B3-475D-81AE-FE0C4E49E900@.microsoft.com...
> I've read about a thousand different things and really need a straight
> answer:
> I'm setting up clustering on a dual-node W2K3 cluster.
> If the applications that are accessing the SQL Server DO NOT utilize
> MSDTC,
> do I need to even bother with creating the group, resources, etc. for
> MSDTC?
> If I still need to create it, exactly what is the Network Resoource name:
> just some random name I make up or is it something specific?
> And doesn't SQL Server install create those anywway?
> Thanks for any help you can provide.
> Anthony
|||Thank you!!! Was going nuts trying to convince people it didn't need to be
there if you don't use it...
"Rodney R. Fournier [MVP]" wrote:
> SQL does not require MSDTC, if you app does not use it, don't install it.
> Cheers,
> Rod
> MVP - Windows Server - Clustering
> http://www.nw-america.com - Clustering
> http://msmvps.com/clustering - Blog
> "A. Robinson" <A. Robinson@.discussions.microsoft.com> wrote in message
> news:6B0E7A37-47B3-475D-81AE-FE0C4E49E900@.microsoft.com...
>
>
|||If you won't be using it heavily, I would still set it up using in the
cluster group using the Quorum disk. I personally have had zero success
installing a clustered SQL 2000 without MSDTC.
Geoff N. Hiten
Microsoft SQL Server MVP
Senior Database Administrator
Careerbuilder.com
I support the Professional Association for SQL Server
www.sqlpass.org
"A. Robinson" <ARobinson@.discussions.microsoft.com> wrote in message
news:EEB3C7D5-974C-4CDB-9C82-69230336BA96@.microsoft.com...[vbcol=seagreen]
> Thank you!!! Was going nuts trying to convince people it didn't need to be
> there if you don't use it...
> "Rodney R. Fournier [MVP]" wrote:
it.[vbcol=seagreen]
name:[vbcol=seagreen]
|||Really? We have 20 of them. They all work great.
Cheers,
Rod
MVP - Windows Server - Clustering
http://www.nw-america.com - Clustering
http://www.msmvps.com/clustering - Blog
"Geoff N. Hiten" <SQLCraftsman@.gmail.com> wrote in message
news:%23Qim8SkJFHA.3340@.TK2MSFTNGP14.phx.gbl...
> If you won't be using it heavily, I would still set it up using in the
> cluster group using the Quorum disk. I personally have had zero success
> installing a clustered SQL 2000 without MSDTC.
> --
> Geoff N. Hiten
> Microsoft SQL Server MVP
> Senior Database Administrator
> Careerbuilder.com
> I support the Professional Association for SQL Server
> www.sqlpass.org
> "A. Robinson" <ARobinson@.discussions.microsoft.com> wrote in message
> news:EEB3C7D5-974C-4CDB-9C82-69230336BA96@.microsoft.com...
> it.
> name:
>
|||While SQL Server does not require MS DTC, MS DTC on a cluster is only
supported when clustered and it is recommended to cluster it.
When clustering MS DTC it is preferred to have it in its own group with its
own resources, your second choice should be to put it in the cluster group,
use the quorum disk and create MS DTC its own Network Name and IP Address
resources for your MSDTC resource to use and set that resources properties
not to affect the group.
Here are some KB articles on correctly setting this up:
301600 How to configure Microsoft Distributed Transaction Coordinator on a
http://support.microsoft.com/?id=301600
817064 How to enable network DTC access in Windows Server 2003
http://support.microsoft.com/?id=817064
Also this article which may be of interest:
817065 How To Enable Network COM Access in Windows Server 2003
http://support.microsoft.com/?id=817065
Dave Whitney
SQL Support
|||Agreed, since we use SQL clusters without MSDTC, we disable the default
windows service for it.
Cheers,
Rod
MVP - Windows Server - Clustering
http://www.nw-america.com - Clustering
http://www.msmvps.com/clustering - Blog
"Dave Whitney [MS]" <dwhitneyOnline@.microsoft.com> wrote in message
news:FEBotroJFHA.132@.TK2MSFTNGXA02.phx.gbl...
> While SQL Server does not require MS DTC, MS DTC on a cluster is only
> supported when clustered and it is recommended to cluster it.
> When clustering MS DTC it is preferred to have it in its own group with
> its
> own resources, your second choice should be to put it in the cluster
> group,
> use the quorum disk and create MS DTC its own Network Name and IP Address
> resources for your MSDTC resource to use and set that resources properties
> not to affect the group.
> Here are some KB articles on correctly setting this up:
> 301600 How to configure Microsoft Distributed Transaction Coordinator on a
> http://support.microsoft.com/?id=301600
> 817064 How to enable network DTC access in Windows Server 2003
> http://support.microsoft.com/?id=817064
> Also this article which may be of interest:
> 817065 How To Enable Network COM Access in Windows Server 2003
> http://support.microsoft.com/?id=817065
> Dave Whitney
> SQL Support
>
|||Well, we have been scared by the recommended best practices into submission,
and simply sucked in and coughed up a separate disk for the MSDTC resource.
(I'm not talking about whether the MSDTC resource should or should not be
configured. It should in our environments.)
Linchi
"Dave Whitney [MS]" <dwhitneyOnline@.microsoft.com> wrote in message
news:FEBotroJFHA.132@.TK2MSFTNGXA02.phx.gbl...
> While SQL Server does not require MS DTC, MS DTC on a cluster is only
> supported when clustered and it is recommended to cluster it.
> When clustering MS DTC it is preferred to have it in its own group with
> its
> own resources, your second choice should be to put it in the cluster
> group,
> use the quorum disk and create MS DTC its own Network Name and IP Address
> resources for your MSDTC resource to use and set that resources properties
> not to affect the group.
> Here are some KB articles on correctly setting this up:
> 301600 How to configure Microsoft Distributed Transaction Coordinator on a
> http://support.microsoft.com/?id=301600
> 817064 How to enable network DTC access in Windows Server 2003
> http://support.microsoft.com/?id=817064
> Also this article which may be of interest:
> 817065 How To Enable Network COM Access in Windows Server 2003
> http://support.microsoft.com/?id=817065
> Dave Whitney
> SQL Support
>
Subscribe to:
Posts (Atom)