7.10 Secure WLMADM authority

Information

The WLMADM authority manages workload objects for a database. Holders of DBADM authority implicitly also hold WLMADM authority.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

1. Revoke any user who should NOT have WLMADM authority-
REVOKE WLMADM ON DATABASE FROM USER <username>

See Also

https://workbench.cisecurity.org/files/162