Free Essay

Pt2520 Week 5 Essay

In:

Submitted By ariesram17
Words 448
Pages 2
Austin Powell
PT2520 Week 5 Essay
07/16/14

Security Plan
Authentication- Will designate using SQL Server, which includes a two-step log-in process that drastically improves security. The initial log-in will grant the user access to the server, there will be an additional log-in required to access the database.
Due to the nature of each user having different permissions granted, SQL Server is a better choice over Windows and will require each user to enter a username and password. Authorization-SQL Server will only grant permissions to which the user is specifically given. Each permission granted is distinct and specifically granted. Roles will be established based on the permissions that are to be granted. There will be a tenant, owner, and property manager role. Once established, then the permissions will be setup and access to the various areas of the database will be given.
Roles
Tenants- Access will be given to such information as their lease, rental agreement, payment history, as well as any maintenance requests requested. Tenants will be allowed to change or delete information such as payment information.
Owners-Access will only be given to information that pertains to the owner. Owner will have permission to only view information about leases, rental agreements, tenants and maintenance requests.
Property Managers-Access to all information will be given to users of this role.
Property Managers will be able to not only view but insert and delete information.
Disaster Management Plan
There are going to be threats associated with database information. Anything from accidental deletion of information to someone attempting to change or add bad information. Malware is also an issue to contend with, therefore it will be essential to install and maintain a security program that is kept up to date and running optimally. Also, another issue is data recovery. In order to prevent the loss of any required information, the following data recovery plan will be implemented.
Policies:
The database server machine will have at least two separate physical drives.
Log files will be stored on a separate drive from the database files.
Backups of the database and the log files will be done twice daily.
Drives will be stored off-site in a secure site.
Each drive will be stored 24 hours or longer before reuse.
Each drive will be labeled with the backup date.
Backup Procedure: We will maintain four portable hard drives. Each morning retrieve the two drives with the oldest backup date. Perform a full database backup to one of the drives at 1 1 :00 AM. Backup the log files to the hard drive. Record the current date and time of the backup on the hard disk.

Similar Documents