You need to enable JavaScript to run this app.
优惠活动
大模型
产品
解决方案
定价
更多

Azure SQL Database出现'sa'登录审计日志,数据库异常恢复求助

关于Azure SQL Database中'sa'登录审计记录的疑问

我有一个已开启**Auditing(审计)**功能的Azure SQL Database,发现已暂停的数据库意外恢复在线。查看审计日志后发现存在sa登录的异常记录,不确定这些记录的含义,想了解这是Azure的正常活动还是有人尝试连接数据库。我认为Azure SQL Database中不存在sa用户,对此存疑。

审计日志的Additional_info列重复出现以下内容:

<action_info xmlns="http://schemas.microsoft.com/sqlserver/2008/sqlaudit_data">destroyed</action_info>
<action_info xmlns="http://schemas.microsoft.com/sqlserver/2008/sqlaudit_data">event disabled</action_info>
<action_info xmlns="http://schemas.microsoft.com/sqlserver/2008/sqlaudit_data">event enabled<startup_type>automatic</startup_type></action_info>

已尝试谷歌搜索,但未找到相关答案。


内容的提问来源于stack exchange,提问作者Tautvydas Perminas

相关产品推荐
方舟 Agent Plan

超全模态模型 × Harness 升级,最新支持 Deepseek-V4.1-Flash、GLM-5.3 系列、Doubao-Seedream-5.0-pro、Kimi-K3 (部分), 限时 9.9 元起

最近更新时间:2026.08.08 04:50:45