Path: news.easynews.com!newsfeed1.easynews.com!easynews.com!easynews!newsfeed.news2me.com!newsfeed.icl.net!newsfeed.fjserv.net!proxad.net!freenix!deine.net!uio.no!newsfeed.song.fi!nntp.inet.fi!inet.fi!newsfeed1.nokia.com!news1.nokia.com!not-for-mail From: "Radu Pirvu" Newsgroups: comp.databases.oracle.server References: Subject: Re: Trigger Creation Lines: 43 X-Priority: 3 X-MSMail-Priority: Normal X-Newsreader: Microsoft Outlook Express 5.50.4807.1700 X-MimeOLE: Produced By Microsoft MimeOLE V5.50.4807.1700 Message-ID: <%maV9.24569$ZE1.519104@news1.nokia.com> Date: Wed, 15 Jan 2003 10:04:43 GMT NNTP-Posting-Host: 131.228.153.85 X-Complaints-To: newsmaster@nokia.com X-Trace: news1.nokia.com 1042625083 131.228.153.85 (Wed, 15 Jan 2003 12:04:43 EET) NNTP-Posting-Date: Wed, 15 Jan 2003 12:04:43 EET Organization: Nokia Xref: newsfeed1.easynews.com comp.databases.oracle.server:172253 X-Received-Date: Wed, 15 Jan 2003 03:11:13 MST (news.easynews.com) Quite colourful answer Billy! :) Thank you, radu "Billy Verreynne" wrote in message news:b03bug$1bb$1@ctb-nnrp2.saix.net... > Radu Pirvu wrote: > > > Is it possible to find out which OS user (not Oracle user) created a > > certain DB trigger? > > Kneejerk reaction is that trying to nail someone instead of solving the > problem, is typical of the head-up-arse attitude of a lot of so-called > professionals and managers. > > Assuming of course that the reason you want the osuser is because someone > made a boo-boo with the trigger, and you want to know from which machine > the trigger def was done. (if not please feel free to ignore me and my > rant) > > Ranting along the same lines... what ever happened to change control? What > about Q&A? What about security? > > > If yes, could you instruct me how, or what data dictionary tables or views > > should I use? > > The answer is a resounding no. Why should the data dictionary carry audit > data? If osuser, why not IP address too? But then, IP can be spoofed. So > what about a Mac address? Oops, but I can go and create raw packets on > Linux and spoof the Mac address too.. What now? > > If auditing of the creation of db objects is what you want to play policeman > with a big stick, then auditing is what you should enable. > > > -- > Billy