You are the administrator of two Microsoft Windows 2000 computers. One computer is running Internet Information Services (IIS),

admin2009-05-19  36

问题 You are the administrator of two Microsoft Windows 2000 computers. One computer is running Internet Information Services (IIS), and the other is running SQL Server 2000. Company partners need to connect by means of the Internet and query data stored on the SQL Server computer. Some of these partners have computers that do not use Microsoft operating systems or Web browsers.

You need to configure the IIS and SQL Server 2000 computers to allow access to data by means of the IIS virtual directory. IIS uses Basic Authentication to allow access to the virtual directory.

Only company partners should have access to the SQL Server computer by means of the Internet. The partners should not be allowed to make ad hoc queries. You want to be able to audit successful and failed logins to the SQL Server computer.

You want to allow the partners access to the SQL Server computer while keeping your security scheme as simple as possible. Which two actions should you take? (Each correct answer represents part of the solution. Choose two.)

选项 A、Configure the IIS virtual directory to allow URL queries.
B、Configure the IIS virtual directory to allow template queries.
C、Create a new Windows user account. Create a corresponding Windows Authenticated login on the SQL Server computer. Configure the IIS virtual directory to always use this login when connecting to the SQL Server computer.
D、Create a Windows Authenticated login on the SQL Server computer for the IIS Internet Guest Account. Configure the IIS virtual directory to always use the Internet Guest Account when connecting to the SQL Server computer.
E、Create a Windows Authenticated login for each company partner on the SQL Server computer. Configure the IIS virtual directory to use Windows Integrated Authentication when connecting to the SQL Server computer.

答案B,E

解析 Explanation:
B: The Allow Template Queries option lets you create XML templates that contain SQL statements, which can be used to return data as XML. No browser would be required, though you could certainly use one. A possible non-browser client could be a Visual Basic application for example.

E: If you force the users to authenticate themselves via Basic authentication, IIS has all information required to make the trusted connection to SQL Server. We set up IIS to use Windows Integrated Authentication when connecting to the SQL Server. Windows Authentication logins must be created on the SQL Server as well.

Incorrect answers:
A: URL queries allow execution of SQL queries directly in the URL. This would require a browser however, but not all partners use browsers.

Note: The Allow URL Queries option lets you type Select statements directly in the browser and return the data as XML.

C: The Internet Guest Account, not a specific Windows account, should be used to connect to the SQL Server from the IIS server.

D: We should not allow access to the SQL Server for the IIS Internet Guest account. That would allow all people connecting to the IIS server access to the SQL Server as well.
转载请注明原文地址:https://kaotiyun.com/show/kuhZ777K
0

最新回复(0)