Subject Re: [ib-support] Firebird Deployment
Author Ann W. Harrison
At 08:00 AM 1/9/2003 +0000, Marcus Monaghan wrote:

>My point is that if the user knows the SYSDBA password then they can see
>everything.

Right. That's about the state of it. So can the account
that does backups. There's no other way to backup of whole
database.

> If they don't know the password they can setup a separate
>interbase server where they know the SYSDBA password and access the database
>from that server as SYSDBA.

Only if they can copy the database to that server. And if they
can copy the database, they already own the data. Anyone who can
get physical access to the database files can read anything in
them - given time, patience, and the Firebird sources.

> > Encryption is a problem - first, because secure encryption
> > is very expensive and insecure encryption is ... well ...
> > insecure.
>
>This is very true but I can't see another way of doing this.

Have you considered encryption on the client side?


Regards,

Ann
www.ibphoenix.com
We have answers.