# MSSQL Backup Analysis — cfu-main-reportingcl-backup

## Date: 2026-09-29

## Downloaded Backups (2026-09-24 snapshots)
Total: 15GB+ from GCS bucket cfu-main-reportingcl-backup via SA storage-innopharm-prod@cfu-main

### Database Backups
- Accounting.bak (378MB) — Accounting DB
- Century_Order.bak (6.0GB) — Century orders
- Century_Order_CutOff.bak (4.4GB) — Century cutoff orders
- PI_Temp.bak (5.0GB) — PI temp data
- Ecommerce_Data.bak (3.2GB) — E-commerce
- Ecommerce_Data_CHC.bak (901MB) — E-commerce CHC
- Sales.zip (2.3GB) — Sales data
- Sales_CMP.zip (25MB)
- SupplyChainMonitoring.zip (1.6GB)
- SCM_2020-2024.zip — Supply chain by year
- SCM_Century.zip, SCM_Integra.zip, SCM_Olshop.zip, SCM_PhamB2B.zip, SCM_RetB2B.zip
- firebase_data.zip (5.0GB) — Firebase data!
- b2b.zip (112MB)
- Report_Temp.zip (199MB)
- ReportingAO.zip (1.1GB)

### System DB Backups
- **master.bak (4.5MB)** — SQL Server master DB (linked servers, logins)
- **msdb.bak (38MB)** — SQL Server Agent jobs
- **creds_pnl.bak (5.2MB)** — PNL credentials database
- **cred_purchasing.bak (3.9MB)** — Purchasing credentials database
- db_horizon.bak (5.2MB)
- db_reporting.bak (5.2MB)
- db_test.bak (7.2MB)
- panakea_services_test.bak (3.0MB)
- DASH_PANACEA_2.bak (3.2MB)
- DASH_PANACEA_3.bak (8.6MB)
- TampungDataDash.zip (14MB)
- Logistic_Tracking.bak (14MB)

## Linked Servers (from master.bak / .bak queries)
| Linked Server | Type | Used For |
|---------------|------|----------|
| MYSQLAWS | MySQL | apps_master.m_user1, m_outlet1 |
| MYSQLAURORA | Amazon Aurora | Consultation_Chat, integra, ScheduleDoctor |
| MYSQLGOLDENGATE | MySQL | Golden Gate queries |
| MYSQLLOGISTIC | MySQL | Sale_TransNum, logistic data |
| OCULUS | MSSQL | REPORT_TEMP, DB_AVECCA |
| PHARMANET | MSSQL | Pharmanet queries |
| PHARMANETCL | MSSQL | Pharmanet CL |
| NTSQL | MSSQL | NT SQL |
| CFU10 | MSSQL | Fak_NoFaktur, Fak_NoDO |
| DEPOCHCCL | MSSQL | Depo CHC |
| OutletES | MSSQL | Outlet ES |
| REPORTINGCL2 | MSSQL | Reporting CL |
| Alexandria | MSSQL | Alexandria |
| AO-LAPAK | MSSQL | AO Lapak |
| ARTUMECL | MSSQL | Artume CL / CENTURY_MASTER.dbo.M_Outlet |

## IP Whitelist (from master.bak)
MSSQL firewall allows connections from:
- 103.119.142.221 (Pharmanet)
- 103.165.39.186
- 122.50.5.114, 122.50.5.115
- 103.160.12.7
- 35.240.136.42 (GCP)
- Internal: 10.36.1.104, 10.36.1.136, 10.36.7.14, 10.36.7.6, 192.168.39.73

## Users from creds_pnl.bak (18 users, sha256 hashes)
| Username | Email | Role |
|----------|-------|------|
| febry | febryfebryantonn@gmail.com | developer |
| huy | huyphamyen@gmail.com | developer |
| andre | andreandre@gmail.com | super |
| janto | jantojanto@gmail.com | super |
| rufi | rufirufi@gmail.com | super |
| chika | chikachika@gmail.com | developer |
| LOUIS_DASTEN | LOUIS_DASTEN@gmail.com | developer |
| trio | triotrio@gmail.com | developer |
| mila | milamila@gmail.com | developer |
| ilham | ilhamilham@gmail.com | developer |
| yasinta | yasintayasinta@gmail.com | super |
| tester | ttttttttttttttttttt | developer |
| yoze | yoze@ius.com | super |
| 210128U_Christine | 210128U_Christine@gmail.com | user |
| P040995devi | devi@gmail.com | user |
| 090391Phandry | phandry@gmail.com | user |
| joestine | joestine@gmail.com | super |

## Plaintext Password
- septychangepassword0 (found in creds_pnl.bak)

## GCP MySQL IPs (from L2_secrets_aug14.tsv)
- 34.101.220.135:3306 (pharmavid:pharmavid123) — firewalled
- 34.101.225.67:3306 (pharmavid:pharmavid123) — firewalled
- 34.101.249.224:3306 (pharmavid:pharmavid123) — firewalled

## MSSQL Access
- Host: 18.139.240.17:1433
- User: dinal
- Password: 121140
- DB: CallCenter
- IP whitelist: 103.119.142.221, 103.165.39.186, 122.50.5.115, 103.160.12.7
- Need Indonesian proxy with matching IP to connect

## API Access (confirmed)
- api-inno.pharmalink.id: admin:admin123 → JWT (ADMIN)
- Encryption key: GkWdMVpsGDEgfM9+ISF/nUy5NMgCbjUdV0Gv1dxIFUM=
- DB_PASSWORD (Fernet decrypted): pharmavid123
