Deny domain administrators to select from sql server tables ( SQL server 2005)

5 pts.
Tags:
SQL Server
SQL Server permissions
SQL Server security
SQL Server tables
I have added the "domain admin" group to the Sql Server, and set permission as "Deny" to connect to the database engine. All employees of this group can still select from any table. The sql server "public" role does not have any permissions on any database table. The "domain admin " group has local admin rights. I can't remove this server from domain. Please advise. Thank you very much.

Answer Wiki

Thanks. We'll let you know when a new response is added.

Add your DBAs as members of the sysadmin fixed server role.

Then remove the BUILTIN\Administrators group from the server.

Make sure that you know the password for the sa account before you do this. If you do it in the wrong order you will loose sysadmin access to the SQL Server.

Discuss This Question:  

 
There was an error processing your information. Please try again later.
Thanks. We'll let you know when a new response is added.
Send me notifications when members answer or reply to this question.

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to:

To follow this tag...

There was an error processing your information. Please try again later.

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

Thanks! We'll email you when relevant content is added and updated.

Following