SQL Server : Transparent Data Encryption (TDE) and physical access to the PC

StackOverflow https://stackoverflow.com/questions/22993786

  •  01-07-2023
  •  | 
  •  

문제

Just a model case. Provided the SQL Server 2008 R2 Enterprise database is encrypted with the TDE. Someone starts the machine from Linux live CD, resets the local user/admin password and boot into Windows 8.1. Will this allow them to access the database data, to encrypt them?

If it is possible to get the access like that for a local account could it somehow help to start using Microsoft Account? Or the local administrator account will be still the risk for Linux access, even if disabled? And the only option how to protect the database data on "workstation/laptop" is to encrypt the whole drive?

도움이 되었습니까?

해결책

TDE only protects the databases from being attached to another server (i.e., the hard drive gets stolen, the files get detached and mounted on another server). In the scenario you describe, TDE will NOT prevent access to the data.

라이센스 : CC-BY-SA ~와 함께 속성
제휴하지 않습니다 StackOverflow
scroll top