Re: Prohibiting ODBC access
Posted in 1998
Neil Truby wrote: > OnLine v7 on Solaris 2.5. > > Does anyone have any ideas how I can prohibit ODBC access to my database > server from anyone, including users who might otherwise be valid > database users? > > The system I have isn't really Client/Server, in that users telnet in. > Therefore one idea I've had is to configure only a shared memory > connection to the server. I think this would work but, if we do acquire > a networked front-end for our database, I'll have to configure TCP/IP > connections for that. The ODBC spec doesn't contain much security info. Most security add-ons are done as an additional feature by the ODBC driver vendors themselves in response to market demand (like yourself). We have a security module which allows restricting access via Unix user, application, RDBMS object (e.g. table), and SQL (e.g. insert) etc. You could try our ODBC driver: SCO SQL-Retriever. Take a look at http://www.sco.com/vision/products/sqlretriever/ for more information and a downloadable eval. Allan Gould (allang at sco dot com) (Please remove anti-spam measures if replying)