Are DBLink Passwords Readable to Privileged Roles and Users?
Hi DBAs:
First, my apologies again to those who read my original post. My intention was not destructive; I was simply too focused on my objective to defend our database links. I have restated my post as questions.
I would like to know if database link passwords are readable to privileged roles and users. This was part of a security session at the 2012 UKOUG. According to the presenter, these can be decrypted and read if the user has elevated privileges such as SYSDBA, DBA, EXP_FULL_DATABASE, etc. Is this correct? I run 11.2.0.3.5 on rhel5 64. The last PSU I applied is January 2013.
First, my apologies again to those who read my original post. My intention was not destructive; I was simply too focused on my objective to defend our database links. I have restated my post as questions.
I would like to know if database link passwords are readable to privileged roles and users. This was part of a security session at the 2012 UKOUG. According to the presenter, these can be decrypted and read if the user has elevated privileges such as SYSDBA, DBA, EXP_FULL_DATABASE, etc. Is this correct? I run 11.2.0.3.5 on rhel5 64. The last PSU I applied is January 2013.
2