5.5 Enable 'SYSTEM GRANT' Audit Option

Information

Logging of all grant and revokes (roles and system privileges) can provide forensic evidence about a pattern of suspect/unauthorized activities. Any unauthorized attempt may be cause for further investigation.

Solution

Execute the following SQL statement to remediate this setting. AUDIT SYSTEM GRANT;

See Also

https://workbench.cisecurity.org/files/601

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c.

Plugin: OracleDB

Control ID: dcd88cf4cd4ca44f9cb220bb93318bde9d58656f673eb24f36c27e4b8135fbcc