Database - RAC/Scalability (MOSC)

MOSC Banner

I just received an audit report by an external service provider. Some points in this report seems st

edited Nov 13, 2015 10:06AM in Database - RAC/Scalability (MOSC) 1 commentAnswered

An excerpt of this report:


Item#

Configuration Item

Action / Recommended Parameters

Rationale/Remediation

  1. 1.09

Windows Program Folder Permissions

Verify and set permissions

Rationale:

The Oracle program installation folder must allow only limited access. Global access or unrestricted folder permissions will allow an attacker to alter Oracle resources and possibly compromise the security of the Oracle system.

Remediation:

Remove permissions for the Users group from the %ProgramFiles%\Oracle folder.

Audit:

Execute the following command: cacls “%ProgramFiles%\Oracle” and ensure BUILTIN\Users is not listed.

10

Windows Oracle Registry Key Permissions

Verify and set permissions

Rationale:

Access to the Oracle registry key must be limited to those users that require it. Unrestricted access to the

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center