Re: How are you authenticating you applications?

From: Niall Litchfield <niall.litchfield_at_gmail.com>
Date: Thu, 10 Mar 2011 16:50:42 +0000
Message-ID: <AANLkTimgMoLHfiCCtFa+LSKNC6FJGEiTyp4gR7nY6XKE_at_mail.gmail.com>



On Thu, Mar 10, 2011 at 1:07 PM, Guillermo Alan Bort <cicciuxdba_at_gmail.com>wrote:

> However, I was not worried about attack, not yet at least, I was more
> worried about people "legitimately" having the password and using it even
> though they are not supposed to.
>
>

Doesn't auditing deal with the sys/app admins who might fall into this category. Other than that I don't see that anyone should legitimately have application passwords.

-- 
Niall Litchfield
Oracle DBA
http://www.orawin.info

--
http://www.freelists.org/webpage/oracle-l
Received on Thu Mar 10 2011 - 10:50:42 CST

Original text of this message