The distinctions among Windows user permissions and any set of SQL Server GRANTs seem like unrelated concepts. As often as not, it seems to actually be implemented with pseu
SQL Logins: Obfuscated cleartext passwords over the wire
Windows Integrated Login with NTLM: Hashes passed over the wire
Windows Integrated Login with Kerberos: Proper secure authentication.
There is only one choice if you care about security.