Security Considerations for AG vs Log Shipping












0















we are considering removing our log shipping server and adding another node to our Availability Groups. While I understand that this should be better cause it's a/synchronous and will move the data to the node faster and can also be used for reporting, I don't know from a security point of view what might be the implications and concerns for the organisation.



Example: in case the primary node becomes infected from some malicious software and effects the logs, what will be the implications on all the other passive nodes.



We still plan to continue taking backups from the primary node frequently, but maybe someone has some experience on the topic.









share







New contributor




R.G.B is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.

























    0















    we are considering removing our log shipping server and adding another node to our Availability Groups. While I understand that this should be better cause it's a/synchronous and will move the data to the node faster and can also be used for reporting, I don't know from a security point of view what might be the implications and concerns for the organisation.



    Example: in case the primary node becomes infected from some malicious software and effects the logs, what will be the implications on all the other passive nodes.



    We still plan to continue taking backups from the primary node frequently, but maybe someone has some experience on the topic.









    share







    New contributor




    R.G.B is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
    Check out our Code of Conduct.























      0












      0








      0








      we are considering removing our log shipping server and adding another node to our Availability Groups. While I understand that this should be better cause it's a/synchronous and will move the data to the node faster and can also be used for reporting, I don't know from a security point of view what might be the implications and concerns for the organisation.



      Example: in case the primary node becomes infected from some malicious software and effects the logs, what will be the implications on all the other passive nodes.



      We still plan to continue taking backups from the primary node frequently, but maybe someone has some experience on the topic.









      share







      New contributor




      R.G.B is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.












      we are considering removing our log shipping server and adding another node to our Availability Groups. While I understand that this should be better cause it's a/synchronous and will move the data to the node faster and can also be used for reporting, I don't know from a security point of view what might be the implications and concerns for the organisation.



      Example: in case the primary node becomes infected from some malicious software and effects the logs, what will be the implications on all the other passive nodes.



      We still plan to continue taking backups from the primary node frequently, but maybe someone has some experience on the topic.







      sql-server availability-groups high-availability log-shipping





      share







      New contributor




      R.G.B is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.










      share







      New contributor




      R.G.B is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.








      share



      share






      New contributor




      R.G.B is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.









      asked 1 min ago









      R.G.BR.G.B

      1




      1




      New contributor




      R.G.B is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.





      New contributor





      R.G.B is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.






      R.G.B is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.






















          0






          active

          oldest

          votes











          Your Answer








          StackExchange.ready(function() {
          var channelOptions = {
          tags: "".split(" "),
          id: "182"
          };
          initTagRenderer("".split(" "), "".split(" "), channelOptions);

          StackExchange.using("externalEditor", function() {
          // Have to fire editor after snippets, if snippets enabled
          if (StackExchange.settings.snippets.snippetsEnabled) {
          StackExchange.using("snippets", function() {
          createEditor();
          });
          }
          else {
          createEditor();
          }
          });

          function createEditor() {
          StackExchange.prepareEditor({
          heartbeatType: 'answer',
          autoActivateHeartbeat: false,
          convertImagesToLinks: false,
          noModals: true,
          showLowRepImageUploadWarning: true,
          reputationToPostImages: null,
          bindNavPrevention: true,
          postfix: "",
          imageUploader: {
          brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
          contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
          allowUrls: true
          },
          onDemand: true,
          discardSelector: ".discard-answer"
          ,immediatelyShowMarkdownHelp:true
          });


          }
          });






          R.G.B is a new contributor. Be nice, and check out our Code of Conduct.










          draft saved

          draft discarded


















          StackExchange.ready(
          function () {
          StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fdba.stackexchange.com%2fquestions%2f231626%2fsecurity-considerations-for-ag-vs-log-shipping%23new-answer', 'question_page');
          }
          );

          Post as a guest















          Required, but never shown

























          0






          active

          oldest

          votes








          0






          active

          oldest

          votes









          active

          oldest

          votes






          active

          oldest

          votes








          R.G.B is a new contributor. Be nice, and check out our Code of Conduct.










          draft saved

          draft discarded


















          R.G.B is a new contributor. Be nice, and check out our Code of Conduct.













          R.G.B is a new contributor. Be nice, and check out our Code of Conduct.












          R.G.B is a new contributor. Be nice, and check out our Code of Conduct.
















          Thanks for contributing an answer to Database Administrators Stack Exchange!


          • Please be sure to answer the question. Provide details and share your research!

          But avoid



          • Asking for help, clarification, or responding to other answers.

          • Making statements based on opinion; back them up with references or personal experience.


          To learn more, see our tips on writing great answers.




          draft saved


          draft discarded














          StackExchange.ready(
          function () {
          StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fdba.stackexchange.com%2fquestions%2f231626%2fsecurity-considerations-for-ag-vs-log-shipping%23new-answer', 'question_page');
          }
          );

          Post as a guest















          Required, but never shown





















































          Required, but never shown














          Required, but never shown












          Required, but never shown







          Required, but never shown

































          Required, but never shown














          Required, but never shown












          Required, but never shown







          Required, but never shown







          Popular posts from this blog

          SQL Server 17 - Attemping to backup to remote NAS but Access is denied

          Always On Availability groups resolving state after failover - Remote harden of transaction...

          Restoring from pg_dump with foreign key constraints