Auditing an Oracle database for security issues is very important. PeteFinnigan.com provides all of the information and tools that you will need Click here for details of PeteFinnigan.com Limited's detailed Oracle database security audit service Click here for details of PeteFinnigan.com Limited's Oracle Security Training Courses
There are 20 visitors online    

Pete Finnigan's Oracle security weblog


Home » Archives » August 2005 » undocumented Oracle?

[Previous entry: "Red Database Security has released a standalone Oracle password cracker"] [Next entry: "Details of the Oracle password algorithm were revealed by its creator in 1993"]

undocumented Oracle?

August 23rd, 2005 by Pete

Post to del.icio.us   Post to Furl   Digg!

There has been a flurry of blog posts from Radoslav, Doug, Jonathan Lewis and from Tom Kyte all about a paper written by Don titled "Undocumented secrets for super-sizing your PGA" that was recently released.

I like undocumented and hard to find information so I am always interested by papers like this. I won't get into the for and against of this particular article and the opposers, Radoslav has done a good job of summarising the current state of this farce in his post "The Don Burleson's article"

I wanted to highlight this post not for many of the reasons that others have quoted but for one reason in particular. This is that whilst undocumented information is interesting to know it should not be used in production databases under any circumstances, also hidden parameters should never be set unless Oracle support direct you to do so.


August 2005
SMTWTFS
 123456
78910111213
14151617181920
21222324252627
28293031   

This is the weblog for Pete Finnigan. Pete works in the area of Oracle security and he specialises in auditing Oracle databases for security issues. This weblog is aimed squarely at those interested in the security of their Oracle databases.

Weblog Home
Weblog Archives

Oracle Security Step-by-Step (Version 2.0)

Home
Oracle Security Tools page
Oracle security papers
Oracle Security alerts

Web Development
SQL Server Security

RSS 1.0 FEED
RSS 2.0 FEED
Atom 0.3 FEED
Powered by gm-rss 2.0.0


Valid XHTML 1.0!