Oracle FAQ Your Portal to the Oracle Knowledge Grid
HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US
 

Home -> Community -> Usenet -> c.d.o.server -> Re: new 11g system install with all the security warnings from oracle made me laugh

Re: new 11g system install with all the security warnings from oracle made me laugh

From: joel garry <joel-garry_at_home.com>
Date: Thu, 6 Dec 2007 17:08:56 -0800 (PST)
Message-ID: <800e6c41-5399-4039-bbbf-7ac984170e81@t1g2000pra.googlegroups.com>


On Dec 6, 4:03 pm, hpuxrac <johnbhur..._at_sbcglobal.net> wrote:
> So you get 11g installed and the OEM page gives all ( well many at
> least ) of the warnings about granting of oracle packages that 10g
> had.
>
> Then it gave a ranking or grading of compliance issues or something
> similar ... 92.
>
> So why doesn't the default install give you a system that doesn't
> already have red flags and warnings "out of the box"? I understand
> that many of these "evolved up" in importance as 10x has been
> receiving maintenance ... so doing a new database in a 10.2.0.3
> patched system doesn't surprise me as much that it comes with prebuilt
> in opportunities.
>
> So why should that be any different with 11g eh?

There is always going to be tension between ease-of-use and security. At some point you have to make decisions and trade-offs, and the defaults are necessarily going to be wacky for some sites. If you totally button it up to begin with, most everyone will complain. If you totally leave it open and leave it to admins to close it, you will find the majority are not going to follow all the instructions - sound familiar?

Hey, even unix-like Mac operating systems are discovering life in the real world.

So 92 is probably better than 42 in this case. Leave a couple of things for the psycho security "analysts," and make it work good for the majority.

At least if it makes you laugh, there's some sort of improvement.

jg

--
@home.com is bogus.
http://www.signonsandiego.com/uniontrib/20071206/news_1n6waves.html
Received on Thu Dec 06 2007 - 19:08:56 CST

Original text of this message

HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US