Oracle FAQ Your Portal to the Oracle Knowledge Grid
HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US
 

Home -> Community -> Usenet -> c.d.o.misc -> Re: Oracle and Firewalls

Re: Oracle and Firewalls

From: Brian Richardson <RichaBK_at_kscgws00.ksc.nasa.gov>
Date: Mon, 11 Jan 1999 10:20:51 -0500
Message-ID: <369A16D3.2792DD38@kscgws00.ksc.nasa.gov>


Wayne,

Thanks for the info. You wouldn't by chance know where I could find the Oracle paper (you referenced) on-line would you ? Thanks in advance if you have the URL handy.

Regards,
Brian Richardson

Wayne Hammond wrote:

> We are using Firewall-1 in front of multiple Oracle databases on Solaris
>
> servers. All works just fine.
>
> However, there is an issue if you use multi-threaded server. The initial
>
> connection is made on the port specified in the tnsnames.ora file. Once,
>
> the connection has been initially completed, mts drops and re-establishes
>
> the connection on an arbitary high tcp port (above 1024). If you don't
>
> account for this in your firewall policy, these connections will be dropped
>
> when you have to recompile and install new policies.
>
> Dedicated server connections are unaffected.
>
> Oracle support does have a paper that explains how to configure mts
>
> to reconnect on specific high ports. This will allow you to reduce the
>
> size of the hole you must allow through your firewall.
>
> -**** Posted from remarQ, Discussions Start Here(tm) ****-
> http://www.remarq.com/ - Host to the the World's Discussions & Usenet
Received on Mon Jan 11 1999 - 09:20:51 CST

Original text of this message

HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US