2.1.4 Ensure 'SECURE_REGISTER_' Is Set to 'TCPS' or 'IPC'

Information

The SECURE_REGISTER_ setting specifies the protocols used to connect to the TNS listener. Each setting should have a value of either 'TCPS' or 'IPC' based on the needs for its protocol.

Rationale:
Listener configuration changes via unencrypted remote connections can result in unauthorized users sniffing control configuration information from the network.

Solution

To remediate this recommendation:

Use a text editor such as 'vi' to set the SECURE_REGISTER_<listener_name>=TCPS or SECURE_REGISTER_<listener_name>=IPC for each listener found in '$ORACLE_HOME/network/admin/listener.ora'.

See Also

https://workbench.cisecurity.org/files/2121

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(2), CSCv6|14.2

Plugin: Windows

Control ID: 837dc985c3b787ad4ba2d5ac3d76f626f892e220a01cea8b58dcbe2ae8fbba22