Re: Privileges by session
- From: Pete Finnigan <pete@xxxxxxxxxxxxxxxx>
- To: gkatteri@xxxxxxxxxxx
- Date: Tue, 12 Jan 2010 10:17:10 +0000
Hi GovindanK,
product user profile is very weak protection and can be easily bypassed;
see http://www.petefinnigan.com/news_letter_001.pdf but also it only
works for SQL*plus
cheers
Pete
GovindanK wrote:
> Did you consider PRODUCT_USER_PROFILE?
>
> GovindanK
>
>
>> On Thu, Jan 7, 2010 at 12:21 PM, Blanchard, William <
>> wblanchard@xxxxxxxxxxxxxxxxxxxx > wrote:
>>
>>
>>
>>
>>
>> Greetings,
>>
>> I have convinced management to allow me to grant read-only access to the
>> developers. The problem is that they know the application passwords and
>> have been using those passwords to circumvent my controls. Is there a
>> way via a Is there some reason the obvious solution wont' work?
>>
>>
>> That is, change the passwords.
>>
> --
> //www.freelists.org/webpage/oracle-l
>
>
>
--
Pete Finnigan
Director
PeteFinnigan.com Limited
Specialists in database security.
If you need help to audit or secure an Oracle database, please ask for
details of our courses and consulting services
Phone: +44 (0)1904 791188
Fax : +44 (0)1904 791188
Mob : +44 (0)7742 114223
email: pete@xxxxxxxxxxxxxxxx
site : http://www.petefinnigan.com
Registered Office: 9 Beech Grove, Acomb, York, YO26 5LD, United Kingdom
Company No : 4664901
VAT No. : 940 6681 14
Please note that this email communication is intended only for the
addressee and may contain confidential or privileged information. The
contents of this email may be circulated internally within your
organisation only and may not be communicated to third parties without
the prior written permission of PeteFinnigan.com Limited. This email is
not intended nor should it be taken to create any legal relations,
contractual or otherwise.
--
//www.freelists.org/webpage/oracle-l
Other related posts:
- » Privileges by session- Blanchard, William
- » Re: Privileges by session- lyallbarbour
- » RE: Privileges by session- Blanchard, William
- » RE: Privileges by session- Jackie Brock
- » RE: Privileges by session- Blanchard, William
- » RE: Privileges by session- Christopher Boyle
- » RE: Privileges by session- Blanchard, William
- » RE: Privileges by session- Blanchard, William
- » RE: Privileges by session- Blanchard, William
- » RE: Privileges by session- Jackie Brock
- » Re: Privileges by session- Kellyn Pedersen
- » RE: Privileges by session- Blanchard, William
- » RE: Privileges by session- Blanchard, William
- » Re: Privileges by session- Jared Still
- » RE: Privileges by session- Blanchard, William
- » Re: Privileges by session- Michael Fontana
- » RE: Privileges by session- Blanchard, William
- » Re: Privileges by session- Jared Still
- » RE: Privileges by session- Blanchard, William
- » Re: Privileges by session- Andre van Winssen
- » RE: Privileges by session- Barun, Vlado
- » Re: Privileges by session- Jared Still
- » Re: Privileges by session- Robert Freeman
- » RE: Privileges by session- Andre van Winssen
- » Re: Privileges by session- Joan Hsieh
- » Re: Privileges by session- Thomas A. La Porte
- » Re: Privileges by session- Michael Fontana
- » Re: Privileges by session- Martin Berger
- » RE: Privileges by session- Upendra N
- » Re: Privileges by session- Martin Bach
- » Re: Privileges by session- Pete Finnigan
- » Re: Privileges by session- Peter Hitchman
- » RE: Privileges by session- Joel.Patterson
- » RE: Privileges by session- Barun, Vlado
- » Re: Privileges by session- Kellyn Pedersen
- » RE: Privileges by session- GovindanK
- » Re: Privileges by session - Pete Finnigan
- » Re: Privileges by session- Yechiel Adar
- » Re: Privileges by session- Jared Still
- » Re: Privileges by session- Yechiel Adar