SQL Server Science
Technical Articles for the DBA / Developer
Home » security » Page 2

Logins, SIDs, and Kerberos from First Principles, Part 4: Scripting Every Permission a Principal Holds

2026-08-13 · by Hannah Vernon · in configuration, security

moved logins between servers with their SIDs and passwords intact. That gets a principal through the front door; it says nothing about what the principal can do once inside. Permissions live in a different set…

Logins, SIDs, and Kerberos from First Principles, Part 3: Migrating Logins Without Losing Them

2026-08-12 · by Hannah Vernon · in configuration, security

Server migrations have a predictable failure mode: the databases restore perfectly, the application connection strings are updated, and then nothing can log in. Or worse, everything can log in but half the database users are…

Logins, SIDs, and Kerberos from First Principles, Part 2: The Vanishing Service Account

2026-08-11 · by Hannah Vernon · in security, troubleshooting

Years ago at a previous employer, I wrote a fleet-sweep script that searched every SQL Server instance in the estate for a specific service account, by name and by a known-bad SID. I no longer…

Logins, SIDs, and Kerberos from First Principles, Part 1: What a SID Actually Is

2026-08-10 · by Hannah Vernon · in basics, security

Ask SQL Server who you are and it will answer with a name. Ask it to make a decision about you, though, and it uses something else entirely: a security identifier, or SID. Names are…

Isolation Is a Contract: Multi-Tenant Data Boundaries

2026-07-04 · by Hannah Vernon · in Data Architecture

This is the last post in the series, and it is about the promise with the least tolerance for being broken. Most contract violations cost you a bug report or an awkward migration. This one…

Generating Compliance Evidence with AI

2026-04-23 · by Hannah Vernon · in AI for DBAs

Generate SOX, PCI-DSS, and HIPAA audit evidence with AI from your actual SQL Server configuration.

« Previous 1 2 3 4 Next »

Search

Categories

  • AI for DBAs
  • announcements
    • events
  • basics
    • localization
  • configuration
  • Data Architecture
  • DMVs
  • documentation
  • extended-events
  • Git for DBAs
  • High Availability
  • Hot Takes
  • Internals
  • maintenance
    • patching
  • Opinion
  • performance
  • PostgreSQL
  • Professional Development
  • recovery
  • reporting
  • ROLLBACK;
  • security
    • data security
  • service broker
  • SQL Server Agent
  • statistics
  • sys
  • t-sql
    • xml
  • tools
    • data masking
    • wsus
  • troubleshooting
  • Uncategorized

Pages

  • About SQL Server Science
  • Get Better Help with a Minimal, Complete, and Verifiable Example, or MCVE
  • Privacy Policy

Meta

  • Log in
  • Entries feed
  • Comments feed
  • WordPress.org
Privacy & Cookies: This site uses cookies. By continuing to use this website, you agree to their use.

To find out more, including how to control cookies, see here: Cookie Policy

Copyright © 2026 SQL Server Science