Re: need better security with SQL*Net and ORASRV

From: Rick Wessman <rwessman_at_prodhp.us.oracle.com>
Date: Mon, 2 Nov 1992 16:14:52 GMT
Message-ID: <RWESSMAN.92Nov2081452_at_prodhp.us.oracle.com>


In article <1992Oct31.121032.26479_at_cmutual.com.au> aaj_at_cmutual.com.au (Tony Jambu) writes: For Unix ports of ORACLE7, it will be possible to restrict remote connections as "internal" per instance.

					Rick Wessman
					rwessman_at_oracle.com

> Access using OPS$user_account via SQL*Net is the least of your worries.
> You should be more concerned about remote access using remote SQLDBA
>
> SQLDBA> Connect internal
> or even
> SQLDBA> shutdown abort
>
> I wont go into details about how this done but to avoid this probable security
> breach, I suggest that you startup your orasrv using
>
> "orasrv opsoff dbaoff"

--
                                            Rick Wessman
                                            rwessman_at_us.oracle.com
Received on Mon Nov 02 1992 - 17:14:52 CET

Original text of this message