5.3 Enable 'DROP USER' Audit Option

Information

As the logging of user activities involving the creation, alteration, or dropping of a USER can provide forensic evidence about a pattern of suspect/unauthorized activities, the audit capability should be set according to the needs of the organization.

Solution

Execute the following SQL statement to remediate this setting. AUDIT DROP USER;

See Also

https://workbench.cisecurity.org/files/601

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c.

Plugin: OracleDB

Control ID: 349b34b2e60543fd560e202546257349a9176ee0d2860d3ed9c6baa575bf276a