May 22, 2003 at 6:03 am
Thanks for taking the test. This forum is a private forum where you can discuss the answers and questions on the test. Please feel free to give us your suggestions about things you didn't like about the questions or interface as well! There will be many more of these soon.
Just in case you didn't see the bullet in the test, this contest ends on the 14th of June and a random person who passed the test will be picked then and emailed.
Brian Knight
http://www.sqlservercentral.com/columnists/bknight
Brian Knight
Free SQL Server Training Webinars
May 22, 2003 at 6:31 am
I think some of the questions where not realistic. When do you really grant or deny permissions to individual IDs? Permissions in the real world are hardly ever granted in such a way.
May 22, 2003 at 7:08 am
I enjoyed the test...showed me a lot I didn't know. And a couple I didn't read closely enough (missed the UDP and 'assumed' it was TCP).
Thanks for taking the time to create it.
-SQLBill
May 22, 2003 at 7:13 am
Very good test, and very real world! I'm on a network security team and this is the stuff I deal with almost daily. Can't wait to take the next one!
- Vega
- Vega
May 22, 2003 at 7:31 am
quote:
I enjoyed the test...showed me a lot I didn't know. And a couple I didn't read closely enough (missed the UDP and 'assumed' it was TCP).
When I was giving the same test to my team, 90% of them missed that question as well. I guess they ran through it too quick as well when they saw 1433 ;).
Brian Knight
http://www.sqlservercentral.com/columnists/bknight
Brian Knight
Free SQL Server Training Webinars
May 22, 2003 at 8:01 am
Very interesting test!
Next time I spent more attention, that's definitely nothing you can do by the way when dealing a hedge swap on the phone. The results were devastating
Cheers,
Frank
--
Frank Kalis
Microsoft SQL Server MVP
Webmaster: http://www.insidesql.org/blogs
My blog: http://www.insidesql.org/blogs/frankkalis/[/url]
May 22, 2003 at 9:46 am
Fantastic Test, Liked doing it , wish i had scored more committed a lot of unforced errors and hence got only 10 right. Maybe have a better luck next time
May 22, 2003 at 10:49 am
This is definitely a test you can't take distracted. That means no Quake and SQL Server security testing at the same time.
K. Brian Kelley
http://www.truthsolutions.com/
Author: Start to Finish Guide to SQL Server Performance Monitoring
http://www.netimpress.com/shop/product.asp?ProductID=NI-SQL1
K. Brian Kelley
@kbriankelley
May 22, 2003 at 11:19 am
Yeah that 1433/tcp 1434/udp thing tripped me up as well.
It was fun :).
May 22, 2003 at 11:46 am
At least he didn't ask about 2433...
K. Brian Kelley
http://www.truthsolutions.com/
Author: Start to Finish Guide to SQL Server Performance Monitoring
http://www.netimpress.com/shop/product.asp?ProductID=NI-SQL1
K. Brian Kelley
@kbriankelley
May 22, 2003 at 1:10 pm
And the test shouldn't be changed to make the UDP more obvious. Good Security is never obvious or easy...it takes work and paying attention to detail, which is what I forgot to do.
-SQLBill
May 22, 2003 at 1:38 pm
Good test. Had to take a little time to think things through. I flip flopped my thoughts on revoke vs deny, so I missed those two and I've never use the C2 audit setting, so I just guessed that it would be stored in the logs directory. Now I know! I'll be waiting for my winning notification email! Thanks for the quiz... keep em coming.
May 22, 2003 at 1:59 pm
I enjoyed the test.
Was surprised not to see any question about SPN and kerberos authentification. This is one of the more confusing aspect of sequel security.
May 22, 2003 at 2:12 pm
quote:
Was surprised not to see any question about SPN and kerberos authentification.
But you only see this in an Active Directory environment. A lot of companies are still NT 4.0.
K. Brian Kelley
http://www.truthsolutions.com/
Author: Start to Finish Guide to SQL Server Performance Monitoring
http://www.netimpress.com/shop/product.asp?ProductID=NI-SQL1
K. Brian Kelley
@kbriankelley
May 22, 2003 at 3:17 pm
Good test. It has been a while since I've had to think some things through, but ultimately, I think it was too easy. After all, if I could ace it, it must be too easy. Thanks to all for putting it together.
I can't wait for the next installment.
Viewing 15 posts - 1 through 15 (of 45 total)
You must be logged in to reply to this topic. Login to reply