Link to home
Start Free TrialLog in
Avatar of Pau Lo
Pau Lo

asked on

oracle listener security best practice

are there any specific best practice recommendations for securing the oracle listener (for 10g and 11i), including how to check whether you are currently following the best practices or if there is work to do?
ASKER CERTIFIED SOLUTION
Avatar of slightwv (䄆 Netminder)
slightwv (䄆 Netminder)

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Pau Lo
Pau Lo

ASKER

so thats all there is to it, use a non default port and add a password?
why make it difficult ?
you still need to be able to get in
or the one coming after you
Just thought of another one.

There was a pretty obscure vulnerability a while back.  There is a new parameter:
ADMIN_RESTRICTIONS_listener_name

http://www.oracle.com/technetwork/topics/security/listener-alert-132737.pdf