I - Mission Critical Sensitive
Rules and Groups employed by this XCCDF Profile
-
SRG-APP-000516-DB-000363
<GroupDescription></GroupDescription>Group -
Oracle application administration roles must be disabled if not required and authorized.
<VulnDiscussion>Application administration roles, which are assigned system or elevated application object privileges, must be protected from...Rule Medium Severity -
SRG-APP-000516-DB-000363
<GroupDescription></GroupDescription>Group -
Connections by mid-tier web and application systems to the Oracle DBMS from a DMZ or external network must be encrypted.
<VulnDiscussion>Multi-tier systems may be configured with the database and connecting middle-tier system located on an internal network, with...Rule Medium Severity -
SRG-APP-000516-DB-000363
<GroupDescription></GroupDescription>Group -
Database job/batch queues must be reviewed regularly to detect unauthorized database job submissions.
<VulnDiscussion>Unauthorized users may bypass security mechanisms by submitting jobs to job queues managed by the database to be run under a ...Rule Medium Severity -
SRG-APP-000516-DB-000363
<GroupDescription></GroupDescription>Group -
Unauthorized database links must not be defined and active.
<VulnDiscussion>DBMS links provide a communication and data transfer path definition between two databases that may be used by malicious user...Rule Medium Severity -
SRG-APP-000516-DB-000363
<GroupDescription></GroupDescription>Group -
Sensitive information from production database exports must be modified before import to a development database.
<VulnDiscussion>Data export from production databases may include sensitive data. Application developers do not have a need to know to sensit...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.