Securing Your Microsoft SQL Server Databases in an Enterprise Environment



Similar documents
Introduction to Enterprise Data Recovery. Rick Weaver Product Manager Recovery & Storage Management BMC Software

SQL-BackTrack the Smart DBA s Power Tool for Backup and Recovery

PATROL From a Database Administrator s Perspective

Backup and Restore Back to Basics with SQL LiteSpeed

Symantec NetBackup 7 Clients and Agents

VERITAS NetBackup 6.0 Database and Application Protection

EMC Backup and Recovery for Microsoft SQL Server 2008 Enabled by EMC Celerra Unified Storage

VERITAS NetBackup BusinesServer

Veritas NetBackup 6.0 Database and Application Protection

Optimized data protection through one console for physical and virtual systems, including VMware and Hyper-V virtual systems

SEP sesam Online/Hot Backup & Restore for Databases and Application Protection

Redundancy Options. Presented By: Chris Williams

FOCUS ON: FDR/UPSTREAM S ONLINE DATABASE SOLUTIONS

Integrating SQL LiteSpeed in Your Existing Backup Infrastructure

CA ARCserve and CA XOsoft r12.5 Best Practices for protecting Microsoft SQL Server

Using HP StoreOnce D2D systems for Microsoft SQL Server backups

StorageCraft Technology Corporation Leading the Way to Safer Computing 2009 StorageCraft Technology Corporation. All Rights Reserved.

IDERA WHITEPAPER. The paper will cover the following ten areas: Monitoring Management. WRITTEN BY Greg Robidoux

WHITE PAPER: ENTERPRISE SOLUTIONS. Quick Recovery of Microsoft Active Directory Using Symantec Backup Exec 11d Agent for Active Directory

Yiwo Tech Development Co., Ltd. EaseUS Todo Backup. Reliable Backup & Recovery Solution. EaseUS Todo Backup Solution Guide. All Rights Reserved Page 1

MS Administering Microsoft SQL Server Databases

UPSTREAM for Linux on System z

BEST PRACTICES FOR PROTECTING MICROSOFT EXCHANGE DATA

VERITAS Storage Foundation 4.3 for Windows

SQL Server for Database Administrators Course Syllabus

Backups and Maintenance

Exam : Transition Your MCTS on SQL Server 2008 to MCSA: SQL Server 2012, Part 2. Title : The safer, easier way to help you pass any IT exams.

SQL Server 2014

Technical Brief. Unify Your Backup and Recovery Strategy with LiteSpeed for SQL Server and LiteSpeed Engine for Oracle

Symantec NetBackup 7.5 Clients and Agents

Administering Microsoft SQL Server Databases MOC 20462

Agenda. Overview Configuring the database for basic Backup and Recovery Backing up your database Restore and Recovery Operations Managing your backups

Whitepaper: Back Up SAP HANA and SUSE Linux Enterprise Server with SEP sesam. Copyright 2014 SEP

Protecting Microsoft SQL Server with an Integrated Dell / CommVault Solution. Database Solutions Engineering

Backup and Restore with 3 rd Party Applications

Disaster Recovery and Business Continuity Basics The difference between Disaster Recovery and Business Continuity

How To Backup A Database In Navision

Protecting Microsoft SQL Server with Asigra Cloud Backup

Designing Database Solutions for Microsoft SQL Server 2012 MOC 20465

CA ARCserve Backup Agents and Options

Veritas Cluster Server from Symantec

How To Get A Storage And Data Protection Solution For Virtualization

End-to-End Availability for Microsoft SQL Server

Maximizing Business Continuity and Minimizing Recovery Time Objectives in Windows Server Environments

Backup Exec 15 Agents and Options

Cloud, Appliance, or Software? How to Decide Which Backup Solution Is Best for Your Small or Midsize Organization.

MySQL Enterprise Backup

Microsoft SQL Server for Oracle DBAs Course 40045; 4 Days, Instructor-led

Administering Microsoft SQL Server Databases

Data Sheet: Backup & Recovery Symantec Backup Exec 12.5 for Windows Servers The gold standard in Windows data protection

Access to easy-to-use tools that reduce management time with Arcserve Backup

Symantec Backup Exec 11d for Windows Small Business Server Premium and Standard Editions

Administering Microsoft SQL Server 2012 Databases

Basic knowledge of the Microsoft Windows operating system and its core functionality Working knowledge of Transact-SQL and relational databases

Facilitating Efficient Data Management by Craig S. Mullins

SQL SERVER ADVANCED PROTECTION AND FAST RECOVERY WITH EQUALLOGIC AUTO-SNAPSHOT MANAGER

Veritas Storage Foundation High Availability for Windows by Symantec

DATASHEET. Proactive Management and Quick Recovery for Exchange Storage

Microsoft SQL Server 2014: MS SQL Server Administering Databases

Database Storage Management with Veritas Storage Foundation by Symantec Manageability, availability, and superior performance for databases

WHITE PAPER THE BENEFITS OF CONTINUOUS DATA PROTECTION. SYMANTEC Backup Exec 10d Continuous Protection Server

Veritas NetBackup 6.0 Server Now from Symantec

EZManage SQL Pro. Quick guide for installation and implementation

MOC 20462C: Administering Microsoft SQL Server Databases

WHITE PAPER: customize. Confidence in a connected world. Fast and Simple Recovery of Your Critical Microsoft Applications with Symantec Backup Exec

SnapManager 5.0 for Microsoft Exchange Best Practices Guide

A SURVEY OF POPULAR CLUSTERING TECHNOLOGIES

WHITE PAPER. Solving the Challenges of Virtual Machine Backups with Acronis Backup & Recovery 10

SQL Server Database Administrator s Guide

Zen Internet. Online Data Backup. Zen Vault Professional Plug-ins. Issue:

IBM Tivoli Storage Manager

SAP Note FAQ: SAP HANA Database Backup & Recovery

VERITAS Backup Exec 10 for Windows Servers AGENTS & OPTIONS MEDIA SERVER OPTIONS KEY BENEFITS AGENT AND OPTION GROUPS

Acronis Recovery TM for Microsoft Exchange TM

Course Outline: Course 6317: Upgrading Your SQL Server 2000 Database Administration (DBA) Skills to SQL Server 2008 DBA Skills

6231A - Maintaining a Microsoft SQL Server 2008 Database

SQL SERVER ADVANCED PROTECTION AND FAST RECOVERY WITH DELL EQUALLOGIC AUTO SNAPSHOT MANAGER

A New Era in Data Protection. Enterprise-Class Data Backup for Smaller Businesses

TOP FIVE REASONS WHY CUSTOMERS USE EMC AND VMWARE TO VIRTUALIZE ORACLE ENVIRONMENTS

SQL DBA Bundle. Data Sheet. Data Sheet. Introduction. What does it cost. What s included in the SQL DBA Bundle. Feedback for the SQL DBA Bundle

Symantec Backup Exec 11d for Windows Small Business Server Premium and Standard Editions

Feature. Database Backup and Recovery Best Practices

Simpler. Secure. SilverLining. Edsquare Managed Cloud Backup. 116 West 23rd Street New York, NY

Oracle Recovery Manager

Protecting your Data in a New Generation Virtual and Physical Environment

Upgrading Your SQL Server 2000 Database Administration (DBA) Skills to SQL Server 2008 DBA Skills Course 6317A: Three days; Instructor-Led

Backup & Restore with SAP BPC (MS SQL 2005)

D78850GC10. Oracle Database 12c Backup and Recovery Workshop. Summary. Introduction. Prerequisites

Enterprise PDM - Backup and Restore

Improving Data Center Performance Through Virtualization of SQL Server Databases

Batch Scheduling in the SAP Environment

VERITAS Business Solutions. for DB2

50238: Introduction to SQL Server 2008 Administration

EMC Retrospect 7.5 for Windows. Backup and Recovery Software

HP StorageWorks Data Protector Express white paper

Transcription:

Securing Your Microsoft SQL Server Databases in an Enterprise Environment

Contents Introduction...1 Taking Steps Now to Secure Your Data...2 Step 1: Back Up Everything...2 Step 2: Simplify as Much as Possible...3 Step 3: Centralize the Backup Administration...3 Step 4: Perform Fast Backups...3 Step 5: Simplify Recoveries...3 Step 6: Shorten Recovery Time...4 Step 7: Test Recovery Procedures...4 Step 8: Test the Master Recovery Procedure...4 Backup and Recovery Solutions...4 PATROL Recovery for Microsoft SQL Server: Comprehensive, Expert Backup and Recovery...5 Extending Backup Functionality and Flexibility...5 Improving Backup and Recovery Performance...6 Improving Manageability and Security...7 Summary...8

Introduction If you are running Microsoft SQL Server databases to support critical enterprise applications, you are part of a growing trend. The low cost and performance benefits of using Microsoft SQL Server on the Microsoft Windows NT and Windows 2000 platforms have fueled the growth of SQL Server as a platform for enterprise-class applications. However, an easy-to-use and cost-effective platform does not ultimately alleviate the problems that come with administering production databases. As databases grow in size and the number of databases in production systems increases, protecting those databases adequately and efficiently becomes a significant challenge. The native backup utilities distributed with Microsoft SQL Server are usually adequate for development systems or small production databases. However, if you start using SQL Server databases in heavily used production environments that have high volumes of data and transactions, managing and maintaining those databases suddenly becomes more complex. Consider the range of problems that a DBA handling several large production databases might encounter: A batch job destroys a single table. That table needs to be recovered from a backup. With the native utilities, the only option is to restore the entire database. This can take a long time for a large database, stretching out costly downtime. Database objects need to be moved or manipulated between servers. For example, some stored procedures and triggers on the test system are ready to be rolled into production, as is a new table. If a table has a number of dependencies, re-creating it on the production system can be very labor-intensive. A disk problem has corrupted the master database and it must be recovered quickly. The master database configuration that existed before the outage must first be determined. Three new production databases have been added but no additional DBAs have been hired. The senior DBA will be on vacation next week, so coverage will be limited. Clearly, a better plan is needed for securing database data one that accounts for a DBA s expertise and procedures as well as the data itself. This paper describes the requirements of such a plan. It also describes how the PATROL Recovery for Microsoft SQL Server product from BMC Software helps to implement a comprehensive plan, securing vital data against a large number of potential problems. Page 1

Taking Steps Now to Secure Your Data If you are running Microsoft SQL Server in a production environment, you can verify that your databases are adequately protected by completing the steps in this section. Step 1: Back Up Everything The types of backups that you can perform and the data that you should back up are as follows: Physical backups are necessary for disaster recovery; you need to perform regular physical backups of the entire server. File and filegroup backups are physical backups of specific SQL Server files and filegroups. You may want to perform a file or filegroup backup if you want to recover a file or filegroup rather than an entire database. Logical backups copy the data in a database to a binary file but do not record the original location of the data. If you perform a logical backup of an object, you can recover it to another database, move things easily from test to production, and recover a single object. Objects include tables, triggers, stored procedures, users, and so on. The PATROL Recovery for Microsoft SQL Server product provides logical backup and recovery capabilities. Object-level backups are logical backups of specific database objects. You may want to perform an object-level backup if you want to recover an object rather than an entire database. Transaction log backups are backups of the file or files to which changes made to a database are recorded. These files (called transaction logs) record the changes to the data since the last full or differential backup. Transaction log backups are critical to the ongoing operation and recoverability of a database. You should create a plan for backing up and tracking transaction logs. An effective strategy for systematic backups of the master database is critical. The master database is the foundation from which other databases in the system derive startup information and knowledge. A corrupted master database would render the SQL Server instance unusable. When you back up your master database, you should also back up the model, msdb, and distribution databases that are associated with it. A full, physical backup is required to back up the master database. If you maintain online records of your backups, you should back up these too. Page 2

Step 2: Simplify as Much as Possible You can support your DBAs by automating regular backup procedures and simplifying recoveries to the greatest extent possible. Because people inevitably make mistakes, the less you rely on any one individual s record-keeping and detail, the more secure your data. A comprehensive backup and recovery solution has the following characteristics: easy-to-use graphical user interface for performing backups and recoveries single enterprise console for all relational databases automated, wizard-guided backups and recoveries Web interface that allows you to perform backups and recoveries Step 3: Centralize the Backup Administration One way to work more efficiently is to centralize database administration as much as possible. A good backup and recovery solution allows you to: manage and track backups and recoveries for multiple servers from a single location back up and recover data from Oracle, DB2 UDB, Microsoft Exchange Server, and Microsoft SQL Server across your enterprise from a single console store all backup and recovery information in one location have all managed hosts available from one console Step 4: Perform Fast Backups As databases increase in size, backup performance becomes critical. A good backup solution should improve backup performance by: performing hot backups, that is, backups taken while the server is online and in use writing only data that has changed; differential backups will only back up data that has changed since the last full backup. backing up specific database objects rather than an entire database sending a backup to multiple physical devices (dump striping) compressing backups to reduce network impact and overall backup time Step 5: Simplify Recoveries Recoveries are often performed during times of crisis. Therefore, recovery procedures need to be as simple as possible. A good recovery solution: provides automated, wizard-guided recoveries automatically applies full, differential, and transaction log backups in the correct order during recovery Page 3

provides recovery options, such as table-level recovery from logical and physical backups and object-level recovery Step 6: Shorten Recovery Time Any downtime is too long. A good recovery solution needs to speed recovery. Look for: automated, wizard-guided recoveries the ability to recover a single table or database object and its dependencies from a logical backup the ability to recover database files or database filegroups from backup files the ability to extract tables, views, stored procedures, triggers, user-defined functions, constraints, and their dependencies from a physical backup Step 7: Test Recovery Procedures It is not enough to have a good plan in place you need to make sure it works. A good solution provides dry-run recovery operations, so you can ensure that your backup destination (device or storage manager) is installed and working properly and that you have all resources that are needed for a recovery at any point. Step 8: Test the Master Recovery Procedure Recovering from a problem with the master database requires a good understanding of the current master database configuration. This is information that some DBAs do not track carefully. A comprehensive recovery solution should guide you through: backing up the master database and its associated model, msdb, and distribution databases on a regular basis recovering the master database and its associated databases by creating recovery files from the backup Backup and Recovery Solutions Most backup and recovery solutions cannot meet all of the requirements described in steps 1 through 8. Native Microsoft utilities, while useful, have limited capabilities. Solutions from storage management vendors manage some of the requirements but usually do not extend the native capabilities, except for device support and management. Storage management vendors cannot provide a robust logical backup and recovery solution for complete coverage. PATROL Recovery for Microsoft SQL Server does meet these requirements and more, enabling you to create truly reliable, manageable backup and recovery procedures. Page 4

PATROL Recovery for Microsoft SQL Server: Comprehensive, Expert Backup and Recovery PATROL Recovery for Microsoft SQL Server provides comprehensive backup and recovery support for large, production SQL Server databases. As part of the extensive PATROL Recovery family of database-specific backup and recovery products, PATROL Recovery for Microsoft SQL Server provides unique functionality and database expertise. It extends the backup and recovery capabilities of Microsoft SQL Server for a truly enterprise-class solution. PATROL Recovery for Microsoft SQL Server provides SQL Server DBAs with: extended flexibility and functionality improved management and security high-performance backup and recovery The following sections describe these benefits in more detail. Extending Backup Functionality and Flexibility The PATROL Recovery for Microsoft SQL Server functionality and flexibility features include: data migration object-level backup and recovery PATROL Recovery for Microsoft SQL Server provides a number of unique capabilities that are available only with this product. Many of these capabilities are implemented through the product s unique logical backup and recovery features. A logical backup extracts the content and structure of database objects, including their interdependencies. You can use logical backups to migrate data between database servers. This feature provides unparalleled safety and security in an environment with multiple inhouse database servers. Logical backup and recovery operations provide a number of new capabilities for DBAs: object-level backups: PATROL Recovery for Microsoft SQL Server provides robust archival capabilities. You can back up individual objects, including triggers, stored procedures, and tables. These logical database objects can be reloaded to another database or to another SQL Server. This capability provides an easy way to move and manipulate database objects or copy and resize databases. object-level recovery: If you need to recover only a specific table or database object, you can do so in most cases while the database is still online and available. PATROL Page 5

Recovery for Microsoft SQL Server can extract objects from either SQL Server 2000 physical backups, or SQL Server 7.0, or SQL Server 2000 logical database backups. To recover a database object from a logical backup, you must have a logical backup of the object that you want to recover. Improving Backup and Recovery Performance The PATROL Recovery for Microsoft SQL Server performance features include: backup compression dump striping object-level recovery point-in-time recovery PATROL Recovery for Microsoft SQL Server uses the native capabilities of Microsoft SQL Server as a basis for its backups and recoveries but adds a number of features that improve overall performance: PATROL Recovery for Microsoft SQL Server improves backup and recovery performance by writing larger block sizes to backup media and compressing data before sending it to the backup device. PATROL Recovery for Microsoft SQL Server supports backup striping to multiple devices. PATROL Recovery for Microsoft SQL Server writes portions of a single backup to multiple devices in parallel. By keeping multiple devices running at their capacity, this technique increases the overall backup throughput rate, which is critical to backup performance for very large databases. By enabling object-level recovery, PATROL Recovery for Microsoft SQL Server speeds recovery if only a single table or object needs to be recovered. You can extract tables, views, stored procedures, triggers, user-defined functions, constraints, and their dependencies from a SQL Server 2000 physical backup. The database itself can remain online and available while PATROL Recovery for Microsoft SQL Server recovers a user table or object. PATROL Recovery for Microsoft SQL Server is able to provide this recovery feature because of a collaborative technical effort between BMC Software and Microsoft Corporation. PATROL Recovery for Microsoft SQL Server allows you to physically recover a backed up database from a specific point in time. This feature maximizes application availability by enabling the fastest, most efficient recovery possible. Page 6

Improving Manageability and Security The PATROL Recovery for Microsoft SQL Server manageability and security features include: automated, unattended backups centralized backup management through a graphical console guided master database recovery backup encryption dry-run recovery operations integrated security Part of ensuring the safety of the database lies in simplifying and automating the administrative processes as much as possible. The safety of the database should not depend on any one individual s expertise. Database administration should fit into an overall enterprise management structure. PATROL Recovery for Microsoft SQL Server secures the database by managing the backup and recovery processes: PATROL Recovery for Microsoft SQL Server provides true automated, unattended backup operations. Its graphical interface and simplified recovery make the DBA s job considerably easier. For example, PATROL Recovery for Microsoft SQL Server provides wizard-guided backups to simplify backup automation. The PATROL Recovery for Microsoft SQL Server graphical console can provide centralized administration for a number of SQL Server systems. Using the console, a DBA can configure, run, and monitor backup operations on many database servers. The easyto-use interface simplifies the process of cross-training DBAs and the centralized console makes it simpler to manage multiple database servers. The PATROL Recovery products let you back up and recover data from Oracle, DB2 UDB, Microsoft Exchange Server, and Microsoft SQL Server across your enterprise from a single console. The PATROL Recovery products also let you perform backups and recoveries from a Web interface. PATROL Recovery for Microsoft SQL Server provides guided recovery if you need to recover the master database. PATROL Recovery for Microsoft SQL Server backs up the master database and its associated databases and guides you through recovering those databases to restore them to their appropriate state. This capability reduces the chance of errors and generally speeds the recovery process when the master database is damaged. No other product, including SQL Server, provides this level of expertise and guidance for master database recovery. Users can log in with standard, mixed, or integrated security modes. Users can also migrate databases from one security mode to another. With integrated security, there is Page 7

no need to log in. Just connect to a host with integrated security, and you re ready to do business. PATROL Recovery for Microsoft SQL Server provides a backup encryption option for sensitive data. No one can recover an encrypted backup without the backup encryption key. This feature provides an extra level of security for sensitive data. Dry-run recovery options let you test a recovery procedure without actually writing data. You can use dry-run recovery to validate that the media is readable and that you have the necessary data for recovery. Summary If you are using Microsoft SQL Server to host critical production applications, you need to ensure that you have implemented a robust backup and recovery environment for production servers. PATROL Recovery for Microsoft SQL Server helps you do just that, providing the performance, manageability, and flexibility to provide enterprise-class coverage for your critical systems. About BMC Software BMC Software is the world s leading provider of management solutions that ensure the availability, performance, and recovery of business-critical applications. We provide Application Service Assurance, which means that the applications you and your customers rely on most stay up and running around the clock. For more than 19 years, the world s leading companies have relied on BMC Software. Page 8

For more information visit BMC Software on the Web at www.bmc.com BMC Software, the BMC Software logos and all other BMC Software product or service names are registered trademarks or trademarks of BMC Software, Inc. All other registered trademarks or trademarks belong to their respective companies. 2001, BMC Software, Inc. All rights reserved. 100039982 8/01