DG0016: DBMS unused components

Information

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Review the list of installed products available for the DBMS install. If any are required and licensed for operation of applications that will be accessing the DBMS, include them in the application design specification and list them in the System Security Plan. If any are not, but have been installed, uninstall them and remove any database schemas, objects, applications and security principals that exclusively support them.

Verify correct operation of the required Oracle components in a test environment before aplying these changes to a production system.

See Also

http://iasecontent.disa.mil/stigs/zip/U_Oracle_Database_11g_V8R20_STIG.zip

Item Details

References: CAT|III, Rule-ID|SV-24359r2_rule, STIG-ID|DG0016-ORACLE11, Vuln-ID|V-3728

Plugin: Unix

Control ID: 170f337454991393720630b30482203dc7ce4142c9f7820fcde1e55b3d3c44bb