All the latest UK technology news, reviews and analysis

SQL Yukon a major security concern

by Jo Ticehurst

18 Sep 2002

Be the first to comment

  • Tweet this

Users should hold off deploying Microsoft's next version of SQL Server until the first service pack because of major security concerns, analysts have warned.

Yukon, the company's next SQL release, is due next year, but analyst Gartner has said that it expects it to contain a high number of security flaws.

Based on the past record of Microsoft products that contain significant changes from previous releases, Gartner analyst John Pescatore has advised risk-averse enterprises to wait for at least the first service pack before deploying internet-exposed implementations of SQL Server.

"Early Yukon adopters that don't want to wait for this pack should enable the minimum number of operating system services required and monitor Computer Emergency Response Team alerts for any announced vulnerabilities," he said.

"After the Nimda worm decimated Windows-based web servers in 2001, Microsoft began more thoroughly to test its software products for security bugs.

"This effort, along with that of external security experts who found flaws Microsoft had not, exposed numerous serious security flaws in SQL Server and forced Microsoft to issue seven vulnerability alerts since April 2002.

"Gartner believes that, because Microsoft won't release Yukon until 2003, determining what production-worthy steps Microsoft will take to improve security will prove extremely difficult."

Pescatore predicted that most enterprises would not migrate applications to Yukon before mid to late 2004.

"Yukon is an important product for Microsoft. However, the company has not yet clearly stated whether it will redefine SQL Server's scalability and availability or redefine SQL Server as the definitive database management system [DBMS] to support Microsoft's operating system, application and development initiatives," he explained.

Gartner suggested that Yukon would be a "montage", with a number of scalability and availability features, but enough to let it compete with IBM and Oracle at the very high end of the DBMS market.

Yukon will probably also have a number of "hooks" to support Microsoft's applications, but they would not be likely to change the role of SQL Server in the DBMS market, added Pescatore.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

36%

0%

10%

54%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Web Tester, Global Online SaaS Provider

This role is in the busy technology department within...

Sage Software Support Technician

We are looking for a Sage Technical Support specialist...

EMEA Cash Equity/Futures Support Manager

EMEA Cash Equity/Futures Support Manager, Top Tier Bank...

Senior Java Analyst/Developer

Senior Java Analyst/Developer Skill set: Java, J2SE...

To send to more than one email address, simply separate each address with a comma.