DG0146-ORACLE11 - Audit records should include the reason for blacklisting or disabling DBMS connections or accounts.

Information

Records of any disabling or locking of account actions taken by the DBMS can contain information valuable to decisions to employ additional responsive actions.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Determine and implement audit settings that will collect and store the cause of any DBMS account or connection lock or disabling actions taken by the DBMS.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Database_11g_Y21M10_STIG.zip

Item Details

References: CAT|II, Rule-ID|SV-24976r1_rule, STIG-ID|DG0146-ORACLE11, Vuln-ID|V-15647

Plugin: OracleDB

Control ID: 1a0a8ffaed1324088614d02f9d4562f30ba3e3c3eeb4328f9ba24c0089038170