![]() |
Telelogic System Architect (steve huntington) | ![]() |
Topic Title: 10.3 & Oracle install/security Topic Summary: Making 10.3 & Oracle controllable and secure. Created On: 25-Apr-2006 12:05 Status: Read Only |
Linear : Threading : Single : Branch |
![]() |
![]()
|
![]() |
|
Hi, I thought I'd mention a couple of things with relation to 10.3 & Oracle.
Having installed 10.3/Oracle9i yesterday I am now working through some issues. For security and operational reasons and in no particular order... we don't want ALL users to have the SAUSER login we don't want users creating their own ad-hoc encyclopedias we don't want Sa to have a DBA role. we don't want the SAUSER name we don't want SA creating and dropping tablespaces we don't want to move to Windows security Current plan in our 10.3 test environment is to create any new encyclopedia by request ( dba/script ) supply a central UDL file enable the encyclopedia to login to its encycolpedia without SAUSER. The SAUSER will change and it's password will not published. So far so good, catalogue things are next. Any comments wellcome. Regards George. Edited: 25-Apr-2006 at 12:06 by George Brennan |
|
![]() |
|
![]() |
|
Hello George,
we tried to set up a Catalogue and got in trouble with exactly the same topics (DBA permissions needed, tablespace has to be created ...). Our hope was, it would be easier to control the users and that they would be able to work with fewer rights, if all encyclopedias and users were created and administrated within the catalogue.
We are actually trying to set up the catalogue outside the catalog-manager to avoid these problems, but this isn't easy either!
We created a catalogue on SQL-Level (or something we expected to be a catalogue), but we are not able to use it...
Best regards,
Stefan
Edited: 12-May-2006 at 14:16 by Stefan Conrad |
|
![]() |
FuseTalk Standard Edition v3.2 - © 1999-2009 FuseTalk Inc. All rights reserved.