Oracle FAQ Your Portal to the Oracle Knowledge Grid
HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US
 

Home -> Community -> Usenet -> c.d.o.server -> Re: Application userid security

Re: Application userid security

From: Niall Litchfield <n-litchfield_at_audit-commission.gov.uk>
Date: Fri, 12 Apr 2002 09:11:08 +0100
Message-ID: <3cb6967d$0$236$ed9e5944@reading.news.pipex.net>


"Ed Stevens" <spamdump_at_nospam.noway.nohow> wrote in message news:3cb58a6d.242934441_at_ausnews.austin.ibm.com...
> Third, developers do occasionally have legitimate need to get into prod
DBs.
> Currently the approved procedure is for them to come to DBA when they have
a
> need, and we create a special userid for them which we drop at the end of
the
> day.

Do other shops operate this procedure? We tend to (not always) insist that it is the DBA's responsibility to make production data changes (if it can't be done thru the app) Not the developers. Admittedly this is partly because our key 'developers' are in fact the application supplier, but I feel the principle still holds. Side by side with this of course goes the DBAs responsibility to find out how the hell the app is supposed to (and does which may or may not be the same) work.

--
Niall Litchfield
Oracle DBA
Audit Commission UK
*****************************************
Please include version and platform
and SQL where applicable
It makes life easier and increases the
likelihood of a good answer

******************************************
Received on Fri Apr 12 2002 - 03:11:08 CDT

Original text of this message

HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US