Re: Question re security

From: Hans Forbrich <fuzzy.graybeard_at_gmail.com>
Date: Fri, 17 Jan 2014 11:29:06 -0700
Message-ID: <52D97672.7000408_at_gmail.com>



On 17/01/2014 9:39 AM, Adric Norris wrote:
> Enabling network encryption

Especially now that it is free. From the 11gR2 licensing doc at http://docs.oracle.com/cd/E11882_01/license.112/e47877/options.htm#DBLIC143

"Network encryption (native network encryption and SSL/TLS) and strong authentication services (Kerberos, PKI, and RADIUS) are no longer part of Oracle Advanced Security and are available in all licensed editions of all supported releases of the Oracle database."

Changing the port is generally a complete waste of time as it takes almost zero effort "for any hacker worth his/her salt" using a standard sniffer to determine the ports that Oracle might be running on. Might as well use the known port and use the time and effort otherwise used in managing a non-default to strengthen that as much as possible.

--
http://www.freelists.org/webpage/oracle-l
Received on Fri Jan 17 2014 - 19:29:06 CET

Original text of this message