Re: Firewalling Oracle

  • From: Jared Still <jkstill@xxxxxxxxx>
  • To: peters@xxxxxxxxx
  • Date: Wed, 11 Jan 2006 15:01:55 -0800

Thanks for the replies.

Our boxes are all behind a firewall.

I got dinged for not using TCP checking in the listener.

Seems overkill to me.

One private reply had a good point - prevent QA boxes from talking
to production boxes, etc.

Jared


On 1/11/06, Peter Sylvester <peters@xxxxxxxxx> wrote:
>
> Its been a while since I've played with this, but it seemed to me that
> there where issuses if you put hosnames in the TCP.INVITED_NODES that
> where running Dynamic IPs.  The DNS lookup in the listener evidently is
> evidently done once, and it does not see the new IP unless you bounce
> the listener.
>
> Its not an issue with app servers and the like (running fixed IPs), but
> for people who wanted some admin type of access from their desktops it
> was.
>
> --Peter
> --
> //www.freelists.org/webpage/oracle-l
>
>
>


--
Jared Still
Certifiable Oracle DBA and Part Time Perl Evangelist

Other related posts: