Skip to content

Oracle Database 12c Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000516-DB-000363

    Group
  • Oracle roles granted using the WITH ADMIN OPTION must not be granted to unauthorized accounts.

    The WITH ADMIN OPTION allows the grantee to grant a role to another database account. Best security practice restricts the privilege of assigning privileges to authorized personnel. Authorized pers...
    Rule Medium Severity
  • SRG-APP-000516-DB-000363

    Group
  • Object permissions granted to PUBLIC must be restricted.

    Permissions on objects may be granted to the user group PUBLIC. Because every database user is a member of the PUBLIC group, granting object permissions to PUBLIC gives all users in the database ac...
    Rule Medium Severity
  • SRG-APP-000516-DB-000363

    Group
  • The Oracle Listener must be configured to require administration authentication.

    Oracle listener authentication helps prevent unauthorized administration of the Oracle listener. Unauthorized administration of the listener could lead to DoS exploits; loss of connection audit dat...
    Rule High Severity
  • SRG-APP-000516-DB-000363

    Group
  • Application role permissions must not be assigned to the Oracle PUBLIC role.

    Permissions granted to PUBLIC are granted to all users of the database. Custom roles must be used to assign application permissions to functional groups of application users. The installation of Or...
    Rule Medium Severity
  • SRG-APP-000516-DB-000363

    Group
  • SRG-APP-000516-DB-000363

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules