Please start any new threads on our new site at https://forums.sqlteam.com. We've got lots of great SQL Server experts to answer whatever question you can come up with.

 All Forums
 SQL Server 2005 Forums
 SQL Server Administration (2005)
 NT logins

Author  Topic 

TRACEYSQL
Aged Yak Warrior

594 Posts

Posted - 2007-08-07 : 14:55:57
We created web site which has NT Authentication....

Using service account
SERVICE ACCOUNT
WEBGROUP
This has WEBGROUP_USERS

WEBGROUP_USERS
Tracey
John

When myself logs in...
Connect To SQL i see

in sysprocesses WEBGROUP

Is there a way to pass TRACEY to the process rather than having
SQL Login set up..

Reason is if someone adds themselves to this group in AD they could have access to our applications im trying to figure out
how to not make AD drive the access to SQL.

Thanks


tkizer
Almighty SQL Goddess

38200 Posts

Posted - 2007-08-07 : 15:01:55
If WEBGROUP_USERS has access to other things, then you shouldn't use that group for SQL Server access. Create an AD group specifically for SQL Server access so that they don't have other rights. Users can be members of multiple groups in AD.

Tara Kizer
http://weblogs.sqlteam.com/tarad/
Go to Top of Page

TRACEYSQL
Aged Yak Warrior

594 Posts

Posted - 2007-08-08 : 10:13:51
The WEBGROUP only has access to one database for reading..

I wanted to see myname come up in SQL Processes...is there a way to get that to appear...rather than seeing
WEBGROUP when i do select * from sysprocesses.
Go to Top of Page
   

- Advertisement -