Тёмный

Oracle Database Security: Kerberos Authentication 

Oracle Database Product Management
Подписаться 7 тыс.
Просмотров 9 тыс.
50% 1

Database security expert, Russ Lowenthal, discusses managing Oracle Database 19c users in Microsoft Active Directory.

Опубликовано:

 

2 июл 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 9   
@ersinpiskinsoy7190
@ersinpiskinsoy7190 2 года назад
Hi , I really liked the presentation and it really helped. Thank you very much for your time Russ Lowenthal.
@AlexLima-com
@AlexLima-com Год назад
Thanks Russ. Great video.
@info781
@info781 Год назад
Russ, we have Kerberos set up for our users, but could you make a video on how to set up authentication for a service account without using a password. STIG requirements are saying we should use a certificate. I don't see any tutorials on this. thanks.
@dannyabraham2347
@dannyabraham2347 3 года назад
Hi Sir, is there a way to hide the diff in the connection string between /@ to /@ ? U know, some tye of wrapping up existing software?
@RussLowenthal
@RussLowenthal 3 года назад
Danny - no way that I know of. It would have to be something at the OS level. We can hide the alias pretty easily just by updating tnsnames.ora, but the change from username/password to just / is pretty hard to obfuscate
@deepdcpandey
@deepdcpandey 2 года назад
Hello Sir, This video is really helpful. I have one question on DB link. As we are creating Kerberos oracle user and if i would like to create a DB link between two oracle user which are kerberos authenticated then how can we do that, because db link require password. Please help
@sainathreddy7577
@sainathreddy7577 3 года назад
HI Sir, when we use okdstry we are getting No credentials cache file found okdstry -old Kerberos Utilities for Linux: Version 12.2.0.1.0 - Production on 13-NOV-2020 06:42:01 Copyright (c) 1996, 2016 Oracle. All rights reserved. okdstry: Credential cache /tmp/krb5cc_10010 not found. okdstry: No credentials cache file found Could you please help me with this if you have any thoughts?
@RussLowenthal
@RussLowenthal 3 года назад
what does oklist show? If there are no credentials listed when you run oklist, then there is nothing to destroy. Also, if you are using in-memory cache (OSMSFT:// or MSLSA:) then Oracle utilities can not destroy those credentials because they are managed by the OS
@RaulKaubi
@RaulKaubi 2 года назад
"ktpass -princ ORACLE/.@......." Does it mean I need to create separate keytab file for each database instance..? Let's say I have multiple RAC databases. So each instance of all the RAC clusters need a separate keytab file..? Raul
Далее
Kerberos Authentication Explained | A deep dive
16:52
Просмотров 329 тыс.
Я нашел кто меня пранкует!
00:51
Installation configuration MIT Kerberos
12:09
Просмотров 12 тыс.
Oracle Database - Kerberos Authentication - Theory
11:20
CertMike Explains Kerberos
7:50
Просмотров 17 тыс.
Oracle Centrally Managed Users (CMU) - Theory
15:55
Просмотров 1,9 тыс.
Cool Stuff for DBAs in Oracle Database 19c
26:09
Просмотров 48 тыс.
Oracle Database - Kerberos Authentication - Demo
15:36