1. Home
  2. Security Hardening
  3. DISA STIG Oracle 11 Installation V9R1 Linux
  4. DG0007-ORACLE11 – The database should be secured in accordance with DoD, vendor and/or commercially accepted practices where applicable.

DG0007-ORACLE11 – The database should be secured in accordance with DoD, vendor and/or commercially accepted practices where applicable.

Details

DBMS systems that do not follow DoD, vendor and/or public best security practices are vulnerable to related published vulnerabilities. A DoD reference document such as a security technical implementation guide or security recommendation guide constitutes the primary source for security configuration or implementation guidance for the deployment of newly acquired IA- and IA-enabled IT products that require use of the product’s IA capabilities.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Apply available security guidance to the DBMS system.

If DoD security guidance is not available, the following are acceptable in descending order as available:
(1) Commercially accepted practices (e.g., SANS);
(2) Independent testing results (e.g., ICSA); or
(3) Vendor literature

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system Unix.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles