Re: NEWERA -- Database Security
Posted in 1997
Brian Hampson wrote: > Mike Ripley (mike.ripley@excelsys.co.uk) wrote: > : I think this question may have been asked before. [snip] > We want users to be able to connect to our Informix Database, using our > Newera Applications, and only OUR applications. It appears that using > ODBC, any putz with excel or msaccess can happily wing over and modify our > tables if our security is in the app, which it is, in our present UNIX versions > Is there a way that we can have some sort of certifying system in the > middle that says that application X is connecting, so go ahead, > otherwise..go away. Firstly, I thought Informix NewEra was Informix's client server toolkit, so it wouldn't appear that you need ODBC to connect anyway .... In answer to your question on ODBC security, there is no mention of the security that you envisage in the ODBC standard itself, but some vendors have added it for the very reason you specify above. You could take a look at our ODBC driver ("SCO SQL-Retriever"). This would allow you to filter ODBC access by table, user id, SQL, etc., but most importantly in your case by application (e.g. Access, Excel, VB). Take a look at http://www.vision.sco.com/products/sqlretriever/ for more info and a downloadable eval Allan Gould (allang@sco.com)