RE: Database and System Security

RE: Database and System Security

 

  

Its not matter of assumption; its about being cautious and covering your
back. You never know when an employee can become a 'pissed off
ex-employee'. I still have access to production server of my
ex-employee and I can hose the entire DB server if I wanted to....but, I
am sane and a responsible person. However, I know of some people who
were fired after being there for 13 years or so.... imagine their state
of mind if they had access to such systems...

-----Original Message-----
From: Les Hollis
[mailto:oracledba-ezmlmshield-x41053127.[Email address protected]
Sent: Thursday, November 02, 2006 11:41 AM
To: LazyDBA Discussion
Subject: Re: Database and System Security

why is it that everytime someone leaves a job it is ASSUMED that he/she
will
try to get back in and do something 'malicious'?

If I were to leave my current job, I'd want nothing to do with what I
was
doing here.


Do you think that he is prone to do something?

Change your oracle user password, system, sys root on the UNIX box and
remove/disable any id created for him. That is about the best you can
do.
Depending on your application, you may be able to change the schema
owner
password...

Do you not have a firewall? IF so, then he obviosuly had a VPN access
method...make sure that is disabled
----- Original Message -----
From: "Bommareddy Anil Kumar "
<oracledba-ezmlmshield-x88206988.[Email address protected]
To: "LazyDBA Discussion" <[Email address protected]
Sent: Thursday, November 02, 2006 2:42 AM
Subject: Database and System Security


> Hi Gurus,
> Our senior DBA is leaving job for good. He
> remembers most the critical passwords[both databases and system] and
ip
> addresses. He is also technically sound from Network and OS
perspective.
> How to prevent any mischief or security as a result of this in near
> future?
>
> Thanks,
> Anil
>
>
> ---------------------------------------------------------------------
> TO REPLY TO EVERYBODY , PLEASE CLICK REPLY-ALL, NOT JUST REPLY
> To post a dba job: http://jobs.lazydba.com
> To Subscribe : http://www.LazyDBA.com
> To unsubscribe: http://www.lazydba.com/unsubscribe.html
>
>



---------------------------------------------------------------------
TO REPLY TO EVERYBODY , PLEASE CLICK REPLY-ALL, NOT JUST REPLY
To post a dba job: http://jobs.lazydba.com
To Subscribe : http://www.LazyDBA.com
To unsubscribe: http://www.lazydba.com/unsubscribe.html




Oracle LazyDBA home page