CA Service Management

 View Only
  • 1.  SQL authentication

    Broadcom Employee
    Posted Oct 22, 2015 03:35 AM


    i am going to install Service Management 14.1 with MS SQL.

    Client have the policy to not use the SQL mix mode authentication.

    can we use the SQL windows authentication Mode.


    if we can not use the mix mode then there is any explanation for justification.




  • 2.  Re: SQL authentication

    Posted Oct 22, 2015 09:36 AM

    SQL Server 2008 R2 Setup. Mixed authentication mode is mandatory.

    We require mixed mode for the install.

    During setup, you must select an authentication mode for the Database Engine. There are two possible modes:

    Windows Authentication mode and mixed mode. Windows Authentication mode enables Windows Authentication and disables SQL Server Authentication.

    Mixed mode enables both Windows Authentication and SQL Server Authentication. Windows Authentication is always available and cannot be disabled.

    Mixed Mode Authentication during setup, you must provide and then confirm a strong password for the built-in SQL Server system administrator account named sa. The sa account connects by using SQL Server Authentication.  We require ‘sa’ or ‘administrator’ rights to create the mdb.

  • 3.  Re: SQL authentication

    Posted Oct 26, 2015 09:11 AM

    Hello Arif, arimu02


    Please let us know if this answers your question on sql server mixed mode authentication.


    Best Regards,

    Gale Bacon

    CA Technologies

  • 4.  Re: SQL authentication

    Broadcom Employee
    Posted Nov 01, 2015 04:36 AM


    As per the client Policy they are allowed to use only SQL windows authentication.

    is there any other way that we can use the windows authenticate mode only.

    client going to use CA Service Management solution.



  • 5.  Re: SQL authentication

    Broadcom Employee
    Posted Nov 01, 2015 07:17 AM


    Client is using windows 2012 / SQL 2012 and CASM 14.1



  • 6.  Re: SQL authentication
    Best Answer

    Posted Nov 03, 2015 07:51 AM

    Hi Arif,

      I have confirmed with our Development that ITAM requires Mixed mode authentication for an install and to run the application. There is no support for Windows Authentication Mode.








  • 7.  Re: SQL authentication

    Broadcom Employee
    Posted Nov 08, 2015 07:18 AM


    Client is using CA Service Desk and CA Service Catalog with CABI and PAM

    also client have the below question.

    can any one give the answer on below.


    Discussion points;


    1. User Authentication – Governance team suggested mix mode authentication is very risky, hence stressed on using Windows authentication mode for which CA team stated it is not possible.


    Action Item – CA team to provide report on challenges of implementing Windows authentication with supporting evidence (including screenshots) to the IT governance team in order to approve the super user access form.  


    1. If Windows authentication is not selected, IT Governance suggested the minimum security control/s to be implemented as given below. 


    Action Item – ITSM team (CA) to provide a solution which address below governance team concerns.


    1. Ability to modify accounts on the SQL server must be restricted. 
    2. Strong password should be implemented (16 to 128 alphanumeric characters, complying to client password policy)
    3. Default configuration to be removed
    4. Service advertisements should be blocked
    5. Isolate server in a separate network segmentation


    1. ITSM team stated, that they will explore the possibility of disabling SA account once the installation is completed and manage the server with limited privilege account.