Database Security Products (MOSC)

MOSC Banner

About Encryption of SYSTEM, SYSAUX, UNDO and TEMP tablespaces in CDB/Root Container

Oracle 19c v12

Hi,

What is the reason of Oracle's recommendation (see below) about encrypting default tablespaces within CDB's?

----------------

Using Transparent Data Encryption with Other Oracle Features - Section 8.2.3, Step 12

"12 -Perform the following steps in the root container.

  1. Optionally, encrypt the USERS tablespace in the root container. While technically possible, you should not encrypt the SYSTEMSYSAUXTEMP, and UNDO tablespaces of the root container."

-----------------

And is that recommendation only for applications using Oracle Key Vault and Data Guard?

Would that be the same recommendation for applications using HSM wallet or applications not using Data Guard?

Thanks

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center