Oracle FAQ Your Portal to the Oracle Knowledge Grid
HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US
 

Home -> Community -> Usenet -> c.d.o.server -> Re: Oracle Security Question

Re: Oracle Security Question

From: Pete Finnigan <plsql_at_petefinnigan.com>
Date: Mon, 13 Dec 2004 15:17:04 +0000
Message-ID: <mFVpZ5AwJbvBRx7r@peterfinnigan.demon.co.uk>


>remove schemas you don't use, like scott.
>
>"Over a network"? Don't transfer plain text passwords over the network.
>Beats the purpose of having a strong password. Hash algorithms are your
>friends.

Hi,

you might be interested in a couple of short papers I wrote for my ramblings page earlier this year where I showed how passwords can be leaked. You can find them at http://www.petefinnigan.com/ramblings.htm

kind regards

Pete

-- 
Pete Finnigan (email:pete_at_petefinnigan.com)
Web site: http://www.petefinnigan.com - Oracle security audit specialists
Oracle security blog: http://www.petefinnigan.com/weblog/entries/index.html
Book:Oracle security step-by-step Guide - see http://store.sans.org for details.
Received on Mon Dec 13 2004 - 09:17:04 CST

Original text of this message

HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US