Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Issue

There is the possibility, under certain circumstances that the permissions on the SQL Backup share were incorrectly set up potentially allowing unauthorised access. Affected systems will be fixed via an automated hotfix deployment on 17th November 2020.

Fix

A PowerShell script has been developed to reconfigure the SQL Backup network share permissions and log actions taken to the Windows event 'Application' log.

...

The script will be packaged as an executable and delivered via an automated hotfix deployment system.

Outcome

Once complete, the SQL Backup network share permissions will only explicitly allow connections from SQL Server service accounts and from users that are members of the local administrators group.

Evidence

Evidence of the script actions can be viewed using the Windows Event Viewer. Under the 'Application' log, search for entries with the source 'SQLBackupPermissionsFixScript' or with Event ID 1001 & 1002.


...

Resources

The PowerShell script and packaged executable are both available for download here if you wish to analyse the code before deployment or if you prefer your IT team to perform the deployment manually. Please note the PowerShell script will require elevated permissions in order to run successfully.

...