LWN.net Logo

Fedora rejects SQLninja

Fedora rejects SQLninja

Posted Nov 15, 2010 18:04 UTC (Mon) by duffy (guest, #31787)
Parent article: Fedora rejects SQLninja

@pabs

Is MSSQL commonly allowed on networks administered by security professionals?


(Log in to post comments)

Fedora rejects SQLninja

Posted Nov 15, 2010 18:27 UTC (Mon) by ricky (subscriber, #45937) [Link]

Maybe not, but I'm pretty sure it's commonly used on networks tested by security professionals, and it'd be awesome if they used Fedora to do it.

Fedora rejects SQLninja

Posted Nov 15, 2010 18:36 UTC (Mon) by dlang (✭ supporter ✭, #313) [Link]

absolutly.

security professionals have less control over what gets run on the networks they are hired to administer than you seem to think.

In addition, MSSQL can be used with reasonable safety, it's all in how you have it setup and what you allow to connect to it.

Fedora rejects SQLninja

Posted Nov 15, 2010 23:42 UTC (Mon) by duffy (guest, #31787) [Link]

I didn't say that they had complete control; rather I wonder how commonly MSSQL is used in such an environment.

Fedora rejects SQLninja

Posted Nov 16, 2010 1:16 UTC (Tue) by dlang (✭ supporter ✭, #313) [Link]

it's very common. there are a lot of applications that cannot talk to any other database. these may not be customer facing applications, they may be admin tools of various kinds, but the end result is that it's very common.

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds