SQL Server¼Æ¾Ú®w¦w¥þ³W¹º¥þ§ð²¤

- ¤¤°êWEB¶}µoªÌºôµ¸ (http://www.webasp.net)
-- §Þ³N±Ðµ{ (http://www.webasp.net/article/)
--- SQL Server¼Æ¾Ú®w¦w¥þ³W¹º¥þ§ð²¤ (http://www.webasp.net/article/22/21217.htm)
-- §@ªÌ¡G¥¼ª¾
-- µo§G¤é´Á¡G 2005-04-29
¦b§ï¶iSQL Server 7.0¨t¦C©Ò¹ê²{ªº¦w¥þ¾÷¨îªº¹Lµ{¤¤¡AMicrosoft«Ø¥ß¤F¤@ºØ¬JÆF¬¡¤S±j¤jªº¦w¥þºÞ²z¾÷¨î¡A¥¦¯à°÷¹ï¥Î¤á³X°ÝSQL ServerªA°È¾¹¨t²Î©M¼Æ¾Ú®wªº¦w¥þ¶i¦æ¥þ­±¦aºÞ²z¡C«ö·Ó¥»¤å¤¶²Ðªº¨BÆJ¡A§A¥i¥H¬°SQL Server 7.0¡]©Î2000¡^ºc³y¥X¤@­ÓÆF¬¡ªº¡B¥iºÞ²zªº¦w¥þµ¦²¤¡A¦Ó¥B¥¦ªº¦w¥þ©Ê¸g±o°_¦ÒÅç¡C ¡@¡@¤@¡BÅçÃÒ¤èªk¿ï¾Ü ’Â’Â¥»¤å¹ïÅçÃÒ¡]authentication¡^©M±ÂÅv¡]authorization¡^³o¨â­Ó·§©À§@¤£¦Pªº¸ÑÄÀ¡CÅçÃÒ¬O«üÀËÅç¥Î¤áªº¨­¥÷¼ÐÃÑ¡F±ÂÅv¬O«ü¤¹³\¥Î¤á°µ¨Ç¤°»ò¡C¦b¥»¤åªº°Q½×¤¤¡AÅçÃÒ¹Lµ{¦b¥Î¤áµn¿ýSQL Serverªº®É­Ô¥X²{¡A±ÂÅv¹Lµ{¦b¥Î¤á¸Õ¹Ï³X°Ý¼Æ¾Ú©Î°õ¦æ©R¥Oªº®É­Ô¥X²{¡C ’’ºc³y¦w¥þµ¦²¤ªº²Ä¤@­Ó¨BÆJ¬O½T©wSQL Server¥Î­þºØ¤è¦¡ÅçÃҥΤá¡CSQL ServerªºÅçÃÒ¬O§â¤@²Õ±b¤á¡B±K½X»PMaster¼Æ¾Ú®wSysxloginsªí¤¤ªº¤@­Ó²M³æ¶i¦æ¤Ç°t¡CWindows NT/2000ªºÅçÃÒ¬O½Ð¨D°ì±±¨î¾¹Àˬd¥Î¤á¨­¥÷ªº¦Xªk©Ê¡C¤@¯ë¦a¡A¦pªGªA°È¾¹¥i¥H³X°Ý°ì±±¨î¾¹¡A§Ú­ÌÀ³¸Ó¨Ï¥ÎWindows NT/2000ÅçÃÒ¡C°ì±±¨î¾¹¥i¥H¬OWin2KªA°È¾¹¡A¤]¥i¥H¬ONTªA°È¾¹¡CµL½×¦b­þºØ±¡ªp¤U¡ASQL Server³£±µ¦¬¨ì¤@­Ó³X°Ý¼Ð°O¡]Access Token¡^¡C³X°Ý¼Ð°O¬O¦bÅçÃÒ¹Lµ{¤¤ºc³y¥X¨Óªº¤@­Ó¯S®í¦Cªí¡A¨ä¤¤¥]§t¤F¥Î¤áªºSID¡]¦w¥þ¼ÐÃѸ¹¡^¥H¤Î¤@¨t¦C¥Î¤á©Ò¦b²ÕªºSID¡C¥¿¦p¥»¤å«á­±©Ò¤¶²Ðªº¡ASQL Server¥H³o¨ÇSID¬°°ò¦±Â¤©³X°ÝÅv­­¡Cª`·N¡A¾Þ§@¨t²Î¦p¦óºc³y³X°Ý¼Ð°O¨Ã¤£­«­n¡ASQL Server¥u¨Ï¥Î³X°Ý¼Ð°O¤¤ªºSID¡C¤]´N¬O»¡¡A¤£½×§A¨Ï¥ÎSQL Server 2000¡BSQL Server 7.0¡BWin2KÁÙ¬ONT¶i¦æÅçÃÒ³£µLÃöºò­n¡Aµ²ªG³£¤@¼Ë¡C ’’¦pªG¨Ï¥ÎSQL ServerÅçÃÒªºµn¿ý¡A¥¦³Ì¤jªº¦n³B¬O«Ü®e©ö³q¹LEnterprise Manager¹ê²{¡A³Ì¤jªº¯ÊÂI¦b©óSQL ServerÅçÃÒªºµn¿ý¥u¹ï¯S©wªºªA°È¾¹¦³®Ä¡A¤]´N¬O»¡¡A¦b¤@­Ó¦hªA°È¾¹ªºÀô¹Ò¤¤ºÞ²z¤ñ¸û§xÃø¡C¨Ï¥ÎSQL Server¶i¦æÅçÃÒªº²Ä¤G­Ó­«­nªº¯ÊÂI¬O¡A¹ï©ó¨C¤@­Ó¼Æ¾Ú®w¡A§Ú­Ì¥²¶·¤À§O¦a¬°¥¦ºÞ²zÅv­­¡C¦pªG¬Y­Ó¥Î¤á¹ï¨â­Ó¼Æ¾Ú®w¦³¬Û¦PªºÅv­­­n¨D¡A§Ú­Ì¥²¶·¤â¤u³]¸m¨â­Ó¼Æ¾Ú®wªºÅv­­¡A©ÎªÌ½s¼g¸}¥»³]¸mÅv­­¡C¦pªG¥Î¤á¼Æ¶q¸û¤Ö¡A¤ñ¦p25­Ó¥H¤U¡A¦Ó¥B³o¨Ç¥Î¤áªºÅv­­ÅܤƤ£¬O«ÜÀWÁc¡ASQL ServerÅçÃÒªºµn¿ý©Î³\¾A¥Î¡C¦ý¬O¡A¦b´X¥G©Ò¦³ªº¨ä¥L±¡ªp¤U¡]¦³¤@¨Ç¨Ò¥~±¡ªp¡A¨Ò¦pª½±µºÞ²z¦w¥þ°ÝÃDªºÀ³¥Î¡^¡A³oºØµn¿ý¤è¦¡ªººÞ²z­t¾á±N¶W¹L¥¦ªºÀuÂI¡C ¡@¡@¤G¡BWebÀô¹Ò¤¤ªºÅçÃÒ ’’§Y¨Ï³Ì¦nªº¦w¥þµ¦²¤¤]±`±`¦b¤@ºØ±¡§Î«e©}ªA¡A³oºØ±¡§Î´N¬O¦bWebÀ³¥Î¤¤¨Ï¥ÎSQL Serverªº¼Æ¾Ú¡C¦b³oºØ±¡§Î¤U¡A¶i¦æÅçÃÒªº¨å«¬¤èªk¬O§â¤@²ÕSQL Serverµn¿ý¦WºÙ©M±K½X´O¤J¨ìWebªA°È¾¹¤W¹B¦æªºµ{§Ç¡A¤ñ¦pASP­¶­±©ÎªÌCGI¸}¥»¡FµM«á¡A¥ÑWebªA°È¾¹­t³dÅçÃҥΤá¡AÀ³¥Îµ{§Ç«h¨Ï¥Î¥¦¦Û¤vªºµn¿ý±b¤á¡]©ÎªÌ¬O¨t²ÎºÞ²z­ûsa±b¤á¡A©ÎªÌ¬°¤F¤è«K°_¨£¡A¨Ï¥ÎSysadminªA°È¾¹¨¤¦â¤¤ªºµn¿ý±b¤á¡^¬°¥Î¤á³X°Ý¼Æ¾Ú¡C ’’³oºØ¦w±Æ¦³´X­Ó¯ÊÂI¡A¨ä¤¤³Ì­«­nªº¥]¬A¡G¥¦¤£¨ã³Æ¹ï¥Î¤á¦bªA°È¾¹¤Wªº¬¡°Ê¶i¦æ¼f®Öªº¯à¤O¡A§¹¥þ¨Ì¿à©óWebÀ³¥Îµ{§Ç¹ê²{¥Î¤áÅçÃÒ¡A·íSQL Server»Ý­n­­©w¥Î¤áÅv­­®É¤£¦Pªº¥Î¤á¤§¶¡¤£©ö°Ï§O¡C¦pªG§A¨Ï¥Îªº¬OIIS 5.0©ÎªÌIIS 4.0¡A§A¥i¥H¥Î¥|ºØ¤èªkÅçÃҥΤá¡C²Ä¤@ºØ¤èªk¬O¬°¨C¤@­Óºô¯¸©M¨C¤@­ÓµêÀÀ¥Ø¿ý³Ð«Ø¤@­Ó°Î¦W¥Î¤áªºNT±b¤á¡C¦¹«á¡A©Ò¦³À³¥Îµ{§Çµn¿ýSQL Server®É³£¨Ï¥Î¸Ó¦w¥þÀô¹Ò¡C§Ú­Ì¥i¥H³q¹L±Â¤©NT°Î¦W±b¤á¦X¾AªºÅv­­¡A§ï¶i¼f®Ö©MÅçÃÒ¥\¯à¡C ’’²ĤGºØ¤èªk¬OÅý©Ò¦³ºô¯¸¨Ï¥ÎBasicÅçÃÒ¡C¦¹®É¡A¥u¦³·í¥Î¤á¦b¹ï¸Ü®Ø¤¤¿é¤J¤F¦Xªkªº±b¤á©M±K½X¡AIIS¤~·|¤¹³\¥L­Ì³X°Ý­¶­±¡CIIS¨Ì¾a¤@­ÓNT¦w¥þ¼Æ¾Ú®w¹ê²{µn¿ý¨­¥÷ÅçÃÒ¡ANT¦w¥þ¼Æ¾Ú®w¬J¥i¥H¦b¥»¦aªA°È¾¹¤W¡A¤]¥i¥H¦b°ì±±¨î¾¹¤W¡C·í¥Î¤á¹B¦æ¤@­Ó³X°ÝSQL Server¼Æ¾Ú®wªºµ{§Ç©ÎªÌ¸}¥»®É¡AIIS§â¥Î¤á¬°¤FÂsÄý­¶­±¦Ó´£¨Ñªº¨­¥÷«H®§µo°eµ¹ªA°È¾¹¡C¦pªG§A¨Ï¥Î³oºØ¤èªk¡AÀ³¸Ó°O¦í¡G¦b³q±`±¡ªp¤U¡AÂsÄý¾¹»PªA°È¾¹¤§¶¡ªº±K½X¶Ç°e¤@¯ë¬O¤£¥[±Kªº¡A¹ï©ó¨º¨Ç¨Ï¥ÎBasicÅçÃÒ¦Ó¦w¥þ¤S«Ü­«­nªººô¯¸¡A§A¥²¶·¹ê²{SSL¡]Secure Sockets Layer¡A¦w¥þ®M±µ¦r¼h¡^¡C ’’¦b«È¤áºÝ¥u¨Ï¥ÎIE 5.0¡BIE 4.0¡BIE 3.0ÂsÄý¾¹ªº±¡ªp¤U¡A§A¥i¥H¨Ï¥Î²Ä¤TºØÅçÃÒ¤èªk¡C§A¥i¥H¦bWebºô¯¸¤W©MµêÀÀ¥Ø¿ý¤W³£±Ò¥ÎNTÅçÃÒ¡CIE·|§â¥Î¤áµn¿ý­pºâ¾÷ªº¨­¥÷«H®§µo°eµ¹IIS¡A·í¸Ó¥Î¤á¸Õ¹Ïµn¿ýSQL Server®ÉIIS´N¨Ï¥Î³o¨Çµn¿ý«H®§¡C¨Ï¥Î³oºØÂ²¤Æªº¤èªk®É¡A§Ú­Ì¥i¥H¦b¤@­Ó»·µ{ºô¯¸ªº°ì¤W¹ï¥Î¤á¨­¥÷¶i¦æÅçÃÒ¡]¸Ó»·µ{ºô¯¸µn¿ý¨ì¤@­Ó»P¹B¦æµÛWebªA°È¾¹ªº°ì¦³µÛ«H¥ôÃö«Yªº°ì¡^¡C ’’³̫á¡A¦pªG¥Î¤á³£¦³­Ó¤H¼Æ¦rÃҮѡA§A¥i¥H§â¨º¨ÇÃҮѬM®g¨ì¥»¦a°ìªºNT±b¤á¤W¡C­Ó¤H¼Æ¦rÃҮѻPªA°È¾¹¼Æ¦rÃҮѥH¦P¼Ëªº§Þ³N¬°°ò¦¡A¥¦ÃÒ©ú¥Î¤á¨­¥÷¼ÐÃѪº¦Xªk©Ê¡A©Ò¥H¥i¥H¨ú¥NNTªºChallenge/Response¡]½è¸ß/¦^À³¡^ÅçÃÒºâªk¡CNetscape©MIE³£¦Û°Ê¦b¨C¤@­Ó­¶­±½Ð¨D¤¤§âÃҮѫH®§µo°eµ¹IIS¡CIIS´£¨Ñ¤F¤@­ÓÅýºÞ²z­û§âÃҮѬM®g¨ìNT±b¤áªº¤u¨ã¡C¦]¦¹¡A§Ú­Ì¥i¥H¥Î¼Æ¦rÃҮѨú¥N³q±`ªº´£¨Ñ±b¤á¦W¦r©M±K½Xªºµn¿ý¹Lµ{¡C ’’¥Ѧ¹¥i¨£¡A³q¹LNT±b¤áÅçÃҥΤá®É§Ú­Ì¥i¥H¨Ï¥Î¦hºØ¹ê²{¤èªk¡C§Y¨Ï·í¥Î¤á³q¹LIIS¸ó¶VInternet³s±µSQL Server®É¡A¿ï¾Ü¤´Â¦s¦b¡C¦]¦¹¡A§AÀ³¸Ó§âNTÅçÃÒ§@¬°­º¿ïªº¥Î¤á¨­¥÷ÅçÃÒ¿ìªk¡C¡@¡@¤T¡B³]¸m¥þ§½²Õ ’’ºc³y¦w¥þµ¦²¤ªº¤U¤@­Ó¨BÆJ¬O½T©w¥Î¤áÀ³¸ÓÄݩ󤰻ò²Õ¡C³q±`¡A¨C¤@­Ó²Õ´©ÎÀ³¥Îµ{§Çªº¥Î¤á³£¥i¥H«ö·Ó¥L­Ì¹ï¼Æ¾Úªº¯S©w³X°Ý­n¨D¤À¦¨³\¦hÃþ§O¡C¨Ò¦p¡A·|­pÀ³¥Î³n¥óªº¥Î¤á¤@¯ë¥]¬A¡G¼Æ¾Ú¿é¤J¾Þ§@­û¡A¼Æ¾Ú¿é¤JºÞ²z­û¡A³øªí½s¼g­û¡A·|­p®v¡A¼f­p­û¡A°]°È¸g²zµ¥¡C¨C¤@²Õ¥Î¤á³£¦³¤£¦Pªº¼Æ¾Ú®w³X°Ý­n¨D¡C ’’±±¨î¼Æ¾Ú³X°ÝÅv­­³Ì²³æªº¤èªk¬O¡A¹ï©ó¨C¤@²Õ¥Î¤á¡A¤À§O¦a¬°¥¦³Ð«Ø¤@­Óº¡¨¬¸Ó²Õ¥Î¤áÅv­­­n¨Dªº¡B°ì¤º¥þ§½¦³®Äªº²Õ¡C§Ú­Ì¬J¥i¥H¬°¨C¤@­ÓÀ³¥Î¤À§O³Ð«Ø²Õ¡A¤]¥i¥H³Ð«Ø¾A¥Î©ó¾ã­Ó¥ø·~ªº¡B²[»\¼sªx¥Î¤áÃþ§Oªº²Õ¡CµM¦Ó¡A¦pªG§A·Q­n¯à°÷ºë½T¦aÁA¸Ñ²Õ¦¨­û¥i¥H°µ¨Ç¤°»ò¡A¬°¨C¤@­ÓÀ³¥Îµ{§Ç¤À§O³Ð«Ø²Õ¬O¤@ºØ¸û¦nªº¿ï¾Ü¡C¨Ò¦p¡A¦b«e­±ªº·|­p¨t²Î¤¤¡A§Ú­ÌÀ³¸Ó³Ð«ØData Entry Operators¡BAccounting Data Entry Managersµ¥²Õ¡C½Ð°O¦í¡A¬°¤F²¤ÆºÞ²z¡A³Ì¦n¬°²Õ¨ú¤@­Ó¯à°÷©ú½Tªí¥Ü¥X§@¥Îªº¦W¦r¡C ’’°£¤F­±¦V¯S©wÀ³¥Îµ{§Çªº²Õ¤§¥~¡A§Ú­ÌÁٻݭn´X­Ó°ò¥»²Õ¡C°ò¥»²Õªº¦¨­û­t³dºÞ²zªA°È¾¹¡C«ö·Ó²ßºD¡A§Ú­Ì¥i¥H³Ð«Ø¤U­±³o¨Ç°ò¥»²Õ¡GSQL Server Administrators¡ASQL Server Users¡ASQL Server Denied Users¡ASQL Server DB Creators¡ASQL Server Security Operators¡ASQL Server Database Security Operators¡ASQL Server Developers¡A¥H¤Î DB_Name Users¡]¨ä¤¤DB_Name¬OªA°È¾¹¤W¤@­Ó¼Æ¾Ú®wªº¦W¦r¡^¡C·íµM¡A¦pªG¥²­nªº¸Ü¡A§AÁÙ¥i¥H³Ð«Ø¨ä¥L²Õ¡C ’’³ЫؤF¥þ§½²Õ¤§«á¡A±µ¤U¨Ó§Ú­Ì¥i¥H±Â¤©¥¦­Ì³X°ÝSQL ServerªºÅv­­¡C­º¥ý¬°SQL Server Users³Ð«Ø¤@­ÓNTÅçÃÒªºµn¿ý¨Ã±Â¤©¥¦µn¿ýÅv­­¡A§âMaster¼Æ¾Ú®w³]¸m¬°¥¦ªºÀq»{¼Æ¾Ú®w¡A¦ý¤£­n±Â¤©¥¦³X°Ý¥ô¦ó¨ä¥L¼Æ¾Ú®wªºÅv­­¡A¤]¤£­n§â³o­Óµn¿ý±b¤á³]¸m¬°¥ô¦óªA°È¾¹¨¤¦âªº¦¨­û¡C±µµÛ¦A¬°SQL Server Denied Users­«½Æ³o­Ó¹Lµ{¡A¦ý³o¦¸­n©Úµ´µn¿ý³X°Ý¡C¦bSQL Server¤¤¡A©Úµ´Åv­­©l²×Àu¥ý¡C³Ð«Ø¤F³o¨â­Ó²Õ¤§«á¡A§Ú­Ì´N¦³¤F¤@ºØ¤¹³\©Î©Úµ´¥Î¤á³X°ÝªA°È¾¹ªº«K±¶¤èªk¡C ’’¬°¨º¨Ç¨S¦³ª½±µ¦bSysxlogins¨t²Îªí¸Ì­±µn°Oªº²Õ±ÂÅv®É¡A§Ú­Ì¤£¯à¨Ï¥ÎEnterpris Managr¡A¦]¬°Enterprise Manager¥u¤¹³\§Ú­Ì±q²{¦³µn¿ý¦W¦rªº¦Cªí¿ï¾Ü¡A¦Ó¤£¬O°ì¤º©Ò¦³²Õªº¦Cªí¡C­n³X°Ý©Ò¦³ªº²Õ¡A½Ð¥´¶}Query Analyzer¡AµM«á¥Î¨t²Î¦sÀx¹Lµ{sp_addsrvrolemember¥H¤Îsp_addrolemember¶i¦æ±ÂÅv¡C ’’¹ï©ó¾Þ§@ªA°È¾¹ªº¦U­Ó²Õ¡A§Ú­Ì¥i¥H¥Îsp_addsrvrolemember¦sÀx¹Lµ{§â¦U­Óµn¿ý¥[¤J¨ì¦X¾AªºªA°È¾¹¨¤¦â¡GSQL Server Administrators¦¨¬°Sysadmins¨¤¦âªº¦¨­û¡ASQL Server DB Creators¦¨¬°Dbcreator¨¤¦âªº¦¨­û¡ASQL Server Security Operators¦¨¬°Securityadmin¨¤¦âªº¦¨­û¡Cª`·Nsp_addsrvrolemember¦sÀx¹Lµ{ªº²Ä¤@­Ó°Ñ¼Æ­n¨D¬O±b¤áªº§¹¾ã¸ô®|¡C¨Ò¦p¡ABigCo°ìªºJoeSÀ³¸Ó¬Obigco\joes¡]¦pªG§A·Q¥Î¥»¦a±b¤á¡A«h¸ô®|À³¸Ó¬Oserver_name\joes¡^¡C ’’­n³Ð«Ø¦b©Ò¦³·s¼Æ¾Ú®w¤¤³£¦s¦bªº¥Î¤á¡A§A¥i¥H­×§ïModel¼Æ¾Ú®w¡C¬°¤F²¤Æ¤u§@¡ASQL Server¦Û°Ê§â©Ò¦³¹ïModel¼Æ¾Ú®wªº§ï°Ê½Æ»s¨ì·sªº¼Æ¾Ú®w¡C¥u­n¥¿½T¹B¥ÎModel¼Æ¾Ú®w¡A§Ú­ÌµL»Ý©w¨î¨C¤@­Ó·s³Ð«Øªº¼Æ¾Ú®w¡C¥t¥~¡A§Ú­Ì¥i¥H¥Îsp_addrolemember¦sÀx¹Lµ{§âSQL Server Security Operators¥[¤J¨ìdb_securityadmin¡A§âSQL Server Developers¥[¤J¨ìdb_owner¨¤¦â¡C ’’ª`·N§Ú­Ì¤´µM¨S¦³±ÂÅv¥ô¦ó²Õ©Î±b¤á³X°Ý¼Æ¾Ú®w¡C¨Æ¹ê¤W¡A§Ú­Ì¤£¯à³q¹LEnterprise Manager±ÂÅv¼Æ¾Ú®w³X°Ý¡A¦]¬°Enterprise Managerªº¥Î¤á¬É­±¥u¤¹³\§Ú­Ì§â¼Æ¾Ú®w³X°ÝÅv­­±Â¤©¦Xªkªºµn¿ý±b¤á¡CSQL Server¤£­n¨DNT±b¤á¦b§Ú­Ì§â¥¦³]¸m¬°¼Æ¾Ú®w¨¤¦âªº¦¨­û©Î¤À°t¹ï¹³Åv­­¤§«e¯à°÷³X°Ý¼Æ¾Ú®w¡A¦ýEnterprise Manager¦³³oºØ­­¨î¡C¾¨ºÞ¦p¦¹¡A¥u­n§Ú­Ì¨Ï¥Îªº¬Osp_addrolemember¦sÀx¹Lµ{¦Ó¤£¬OEnterprise Manager¡A´N¥i¥H¦b¤£±Â¤©°ì¤ºNT±b¤á¼Æ¾Ú®w³X°ÝÅv­­ªº±¡ªp¤U¬°¥ô·NNT±b¤á¤À°tÅv­­¡C ’’¨ì³o¸Ì¬°¤î¡A¹ïModel¼Æ¾Ú®wªº³]¸m¤w¸g§¹¦¨¡C¦ý¬O¡A¦pªG§Aªº¥Î¤á¸sÅé¹ï¥ø·~½d³ò¤º¦U­ÓÀ³¥Î¼Æ¾Ú®w¦³µÛÃþ¦üªº³X°Ý­n¨D¡A§A¥i¥H§â¤U­±³o¨Ç¾Þ§@²¾¨ìModel¼Æ¾Ú®w¤W¶i¦æ¡A¦Ó¤£¬O¦b­±¦V¯S©wÀ³¥Îªº¼Æ¾Ú®w¤W¶i¦æ¡C ¡@¥|¡B¤¹³\¼Æ¾Ú®w³X°Ý ’’¦b¼Æ¾Ú®w¤º³¡¡A»P¨´¤µ¬°¤î§Ú­Ì¹ïµn¿ýÅçÃÒªº³B²z¤è¦¡¤£¦P¡A§Ú­Ì¥i¥H§âÅv­­¤À°tµ¹¨¤¦â¦Ó¤£¬Oª½±µ§â¥¦­Ì¤À°tµ¹¥þ§½²Õ¡C³oºØ¯à¤O¨Ï±o§Ú­Ì¯à°÷»´ÃP¦a¦b¦w¥þµ¦²¤¤¤¨Ï¥ÎSQL ServerÅçÃÒªºµn¿ý¡C§Y¨Ï§A±q¨Ó¨S¦³·Q­n¨Ï¥ÎSQL Serverµn¿ý±b¤á¡A¥»¤å¤´Â«ØÄ³¤À°tÅv­­µ¹¨¤¦â¡A¦]¬°³o¼Ë§A¯à°÷¬°¥¼¨Ó¥i¯à¥X²{ªºÅܤưµ¦n·Ç³Æ¡C ’’³ЫؤF¼Æ¾Ú®w¤§«á¡A§Ú­Ì¥i¥H¥Îsp_grantdbaccess¦sÀx¹Lµ{±ÂÅvDB_Name Users²Õ³X°Ý¥¦¡C¦ýÀ³¸Óª`·Nªº¬O¡A»Psp_grantdbaccess¹ïÀ³ªºsp_denydbaccess¦sÀx¹Lµ{¨Ã¤£¦s¦b¡A¤]´N¬O»¡¡A§A¤£¯à«ö·Ó©Úµ´¹ïªA°È¾¹³X°Ýªº¤èªk©Úµ´¹ï¼Æ¾Ú®wªº³X°Ý¡C¦pªG­n©Úµ´¼Æ¾Ú®w³X°Ý¡A§Ú­Ì¥i¥H³Ð«Ø¥t¥~¤@­Ó¦W¬°DB_Name Denied Usersªº¥þ§½²Õ¡A±ÂÅv¥¦³X°Ý¼Æ¾Ú®w¡AµM«á§â¥¦³]¸m¬°db_denydatareader¥H¤Îdb_denydatawriter¨¤¦âªº¦¨­û¡Cª`·NSQL»y¥yÅv­­ªº¤À°t¡A³o¸Ìªº¨¤¦â¥u­­¨î¹ï¹ï¶Hªº³X°Ý¡A¦ý¤£­­¨î¹ïDDL¡]Data Definition Language¡A¼Æ¾Ú©w¸q»y¨¥¡^©R¥Oªº³X°Ý¡C ’Â’Â¥¿¦p¹ïµn¿ý¹Lµ{ªº³B²z¡A¦pªG³X°Ý¼Ð°O¤¤ªº¥ô·NSID¤w¸g¦bSysusers¨t²Îªíµn°O¡ASQL±N¤¹³\¥Î¤á³X°Ý¼Æ¾Ú®w¡C¦]¦¹¡A§Ú­Ì¬J¥i¥H³q¹L¥Î¤áªº­Ó¤HNT±b¤áSID±ÂÅv¥Î¤á³X°Ý¼Æ¾Ú®w¡A¤]¥i¥H³q¹L¥Î¤á©Ò¦bªº¤@­Ó¡]©ÎªÌ¦h­Ó¡^²ÕªºSID±ÂÅv¡C¬°¤F²¤ÆºÞ²z¡A§Ú­Ì¥i¥H³Ð«Ø¤@­Ó¦W¬°DB_Name Usersªº¾Ö¦³¼Æ¾Ú®w³X°ÝÅv­­ªº¥þ§½²Õ¡A¦P®É¤£§â³X°ÝÅv±Â¤©©Ò¦³¨ä¥Lªº²Õ¡C³o¼Ë¡A§Ú­Ì¥u»Ý²³æ¦a¦b¤@­Ó¥þ§½²Õ¤¤²K¥[©ÎªÌ§R°£¦¨­û´N¥i¥H¼W¥[©ÎªÌ´î¤Ö¼Æ¾Ú®w¥Î¤á¡C ¡@¡@¤­¡B¤À°tÅv­­ ’’¹ê¬I¦w¥þµ¦²¤ªº³Ì«á¤@­Ó¨BÆJ¬O³Ð«Ø¥Î¤á©w¸qªº¼Æ¾Ú®w¨¤¦â¡AµM«á¤À°tÅv­­¡C§¹¦¨³o­Ó¨BÆJ³Ì²³æªº¤èªk¬O³Ð«Ø¤@¨Ç¦W¦r»P¥þ§½²Õ¦W¦r°t®Mªº¨¤¦â¡C¨Ò¦p¹ï©ó«e­±¨Ò¤l¤¤ªº·|­p¨t²Î¡A§Ú­Ì¥i¥H³Ð«ØAccounting Data Entry Operators¡BAccounting Data Entry Managers¤§Ãþªº¨¤¦â¡C¥Ñ©ó·|­p¼Æ¾Ú®w¤¤ªº¨¤¦â»P±b°È³B²z¥ô°È¦³Ãö¡A§A¥i¯à·Q­nÁYµu³o¨Ç¨¤¦âªº¦W¦r¡CµM¦Ó¡A¦pªG¨¤¦â¦W¦r»P¥þ§½²Õªº¦W¦r°t®M¡A§A¥i¥H´î¤Ö²V¶Ã¡A¯à°÷§ó¤è«K¦a§PÂ_¥X­þ¨Ç²ÕÄÝ©ó¯S©wªº¨¤¦â¡C ’’³Ыئn¨¤¦â¤§«á´N¥i¥H¤À°tÅv­­¡C¦b³o­Ó¹Lµ{¤¤¡A§Ú­Ì¥u»Ý¥Î¨ì¼Ð·ÇªºGRANT¡BREVOKE©MDENY©R¥O¡C¦ýÀ³¸Óª`·NDENYÅv­­¡A³o­ÓÅv­­Àu¥ý©ó©Ò¦³¨ä¥LÅv­­¡C¦pªG¥Î¤á¬O¥ô·N¨ã¦³DENYÅv­­ªº¨¤¦â©ÎªÌ²Õªº¦¨­û¡ASQL Server±N©Úµ´¥Î¤á³X°Ý¹ï¶H¡C ’’±µ¤U¨Ó§Ú­Ì´N¥i¥H¥[¤J©Ò¦³SQL ServerÅçÃÒªºµn¿ý¡C¥Î¤á©w¸qªº¼Æ¾Ú®w¨¤¦â¥i¥H¥]§tSQL Serverµn¿ý¥H¤ÎNT¥þ§½²Õ¡B¥»¦a²Õ¡B­Ó¤H±b¤á¡A³o¬O¥¦³ÌÄ_¶Qªº¯SÂI¤§¤@¡C¥Î¤á©w¸qªº¼Æ¾Ú®w¨¤¦â¥i¥H§@¬°¦UºØµn¿ýªº³q¥Î®e¾¹¡A§Ú­Ì¨Ï¥Î¥Î¤á©w¸q¨¤¦â¦Ó¤£¬Oª½±µ§âÅv­­¤À°tµ¹¥þ§½²Õªº¥D­n­ì¦]´N¦b©ó¦¹¡C ’’¥ѩ󤺫تº¨¤¦â¤@¯ë¾A¥Î©ó¾ã­Ó¼Æ¾Ú®w¦Ó¤£¬O³æ¿Wªº¹ï¶H¡A¦]¦¹³o¸Ì«ØÄ³§A¥u¨Ï¥Î¨â­Ó¤º«Øªº¼Æ¾Ú®w¨¤¦â,¡A§Ydb_securityadmin©Mdb_owner¡C¨ä¥L¤º«Ø¼Æ¾Ú®w¨¤¦â¡A¨Ò¦pdb_datareader¡A¥¦±Â¤©¹ï¼Æ¾Ú®w¸Ì­±©Ò¦³¹ï¶HªºSELECTÅv­­¡CÁöµM§A¥i¥H¥Îdb_datareader¨¤¦â±Â¤©SELECTÅv­­¡AµM«á¦³¿ï¾Ü¦a¹ï­Ó§O¥Î¤á©Î²Õ©Úµ´SELECTÅv­­¡A¦ý¨Ï¥Î³oºØ¤èªk®É¡A§A¥i¯à§Ñ°O¬°¬Y¨Ç¥Î¤á©ÎªÌ¹ï¹³³]¸mÅv­­¡C¤@ºØ§ó²³æ¡B§óª½±µ¦Ó¥B¤£®e©ö¥X²{¿ù»~ªº¤èªk¬O¬°³o¨Ç¯S®íªº¥Î¤á³Ð«Ø¤@­Ó¥Î¤á©w¸qªº¨¤¦â¡AµM«á¥u§â¨º¨Ç¥Î¤á³X°Ý¹ï¹³©Ò»Ý­nªºÅv­­±Â¤©³o­Ó¥Î¤á©w¸qªº¨¤¦â¡C ¡@¡@¤»¡B²¤Æ¦w¥þºÞ²z ’Â’ÂSQL ServerÅçÃÒªºµn¿ý¤£¶È¯à°÷¤è«K¦a¹ê²{¡A¦Ó¥B»PNTÅçÃÒªºµn¿ý¬Û¤ñ¡A¥¦§ó®e©ö½s¼g¨ìÀ³¥Îµ{§Ç¸Ì¡C¦ý¬O¡A¦pªG¥Î¤áªº¼Æ¶q¶W¹L25¡A©ÎªÌªA°È¾¹¼Æ¶q¦b¤@­Ó¥H¤W¡A©ÎªÌ¨C­Ó¥Î¤á³£¥i¥H³X°Ý¤@­Ó¥H¤Wªº¼Æ¾Ú®w¡A©ÎªÌ¼Æ¾Ú®w¦³¦h­ÓºÞ²z­û¡ASQL ServerÅçÃÒªºµn¿ý¤£®e©öºÞ²z¡C¥Ñ©óSQL Server¨S¦³Åã¥Ü¥Î¤á¦³®ÄÅv­­ªº¤u¨ã¡A­n°O¾Ð¨C­Ó¥Î¤á¨ã¦³­þ¨ÇÅv­­¥H¤Î¥L­Ì¬°¦ó­n±o¨ì³o¨ÇÅv­­´N§ó¥[§xÃø¡C§Y¨Ï¹ï©ó¤@­Ó¼Æ¾Ú®wºÞ²z­ûÁÙ­n¾á­t¨ä¥L³d¥ôªº¤p«¬¨t²Î¡A²¤Æ¦w¥þµ¦²¤¤]¦³§U©ó´î»´°ÝÃDªº½ÆÂøµ{«×¡C¦]¦¹¡A­º¿ïªº¤èªkÀ³¸Ó¬O¨Ï¥ÎNTÅçÃÒªºµn¿ý¡AµM«á³q¹L¤@¨Çºë¤ß¿ï¾Üªº¥þ§½²Õ©M¼Æ¾Ú®w¨¤¦âºÞ²z¼Æ¾Ú®w³X°Ý¡C ’’¤U­±¬O¤@¨Ç²¤Æ¦w¥þµ¦²¤ªº¸gÅç³W«h¡G ¡@¡@·¥Î¤á³q¹LSQL Server Users²ÕÀò±oªA°È¾¹³X°Ý¡A³q¹LDB_Name Users²ÕÀò±o¼Æ¾Ú®w³X°Ý¡C ¡@¡@·¥Î¤á³q¹L¥[¤J¥þ§½²ÕÀò±oÅv­­¡A¦Ó¥þ§½²Õ³q¹L¥[¤J¨¤¦âÀò±oÅv­­¡A¨¤¦âª½±µ¾Ö¦³¼Æ¾Ú®w¸ÌªºÅv­­¡C ¡@¡@·»Ý­n¦hºØÅv­­ªº¥Î¤á³q¹L¥[¤J¦h­Ó¥þ§½²Õªº¤è¦¡Àò±oÅv­­¡C ’Â’Â¥u­n³W¹º±o«ê·í¡A§A¯à°÷¦b°ì±±¨î¾¹¤W§¹¦¨©Ò¦³ªº³X°Ý©MÅv­­ºûÅ@¤u§@¡A¨Ï±oªA°È¾¹¤Ï¬M¥X§A¦b°ì±±¨î¾¹¤W¶i¦æªº¦UºØ³]¸m½Õ¾ã¡CÁöµM¹ê»ÚÀ³¥Î¤¤±¡ªp¥i¯à¦³©ÒÅܤơA¦ý¥»¤å¤¶²Ðªº°ò¥»±¹¬I¤´Â¾A¥Î¡A¥¦­Ì¯à°÷À°§U§Aºc³y¥X«Ü®e©öºÞ²zªº¦w¥þµ¦²¤¡C

webasp.net