Showing posts with label risk. Show all posts
Showing posts with label risk. Show all posts

Wednesday, March 21, 2012

Microsoft decision tree

I have an example case below :

Customer Id

Debt Level

Income Level

Employment Type

Credit Risk

1

High

High

Self-Employed

Bad

2

High

High

Salaried

Bad

3

High

Low

Salaried

Bad

4

Low

Low

Salaried

Good

5

Low

Low

Self-Emplyed

Bad

6

Low

High

Self-Employed

Good

7

Low

High

Salaried

Good

My question is how to make a tree from the case above I mean what method we should use to split the tree. (Mannually counting)

I hope anyone could help me by explaining i details.Because i want to make some analysis how microsoft decision tree works exactly.So Please explain me the process to build the tree completely with the method.

Thanks a lot.

Please clarify your question. I'm not sure what you are asking for- you want the equations used to determine a split?|||I'm so sorry because of confusing question. Yes what i mean is equations used to determine a split. Would you explain it detail for me? Because i 've made a thesis about microsoft decision tree analysis so i need to know how microsoft decision tree work exactly.
thank you so much|||

This article explains how the Microsoft Decision Tree algorithm works at a high level and also points to the relevant research papers that the implementation is based on: http://msdn2.microsoft.com/en-us/library/ms175312(SQL.90,d=ide).aspx

Monday, March 19, 2012

Microsoft Baseline Security Analyser 2.1

Hi

I downloaded MBSA and ran it against my SQL 2005 Server. It tells me that I have a severe risk because

'The following databases have public access.Remove the public access if it is not required - tempdb , model , msdb , ReportServer , ReportServerTempDB'

I have checked these databases and each have the Guest User but it is disabled. If I check the database properties the public role has no permissions against the listed databases.

Is this a bug with MBSA? If not how do I remove Public Access?

Hi Ewan, are you using a Xp_cmdshell enabled?

|||

Hi Emanuel

I an not sure what you mean. I have installed the product MBSA on a PC running VISTA business and am scanning the SQL server from this PC. The server operating system is Windows Server 2003 R2

Regards

|||

Hi Emanuel

I have now looked it up and xp_cmdshell is not enabled

Regards

|||

The MBSA given't u more details about this vulnerability message?

|||

Hi Emanuel

No MBSA gives no further information on this message

|||

Ewan, has your sql server a valid internet ip address or any other network vulnerability?

|||I mean, does your sql server is exposed on internet?|||

Hi Emanuel

Only via Reporting Services

|||

I'm suggest you investigate any vulnerability on SSRS like a public access on web service.

see the link below, there is a cool tool to do a verification on any possible network vulnerability.

http://www.gfi.com/lannetscan/?adv=40&loc=3&adclickid=14102298