Disable connect / as sysdba


How to disable “connect / as sysdba” ?

Do one of this step :
1. change your authentication
from SQLNET.AUTHENTICATION_SERVICES= (NTS)
to SQLNET.AUTHENTICATION_SERVICES= (BEQ,NONE)
in you sqlnet.ora if on windows.

2. remove user from the dba group

note: consider using the Password file authentication method

Advertisements

2 Responses

  1. What if a user, other than the DBA, did back those changes?
    1. Change authentication
    from SQLNET.AUTHENTICATION_SERVICES=(BEQ,NONE)
    to SQLNET.AUTHENTICATION_SERVICES= (NTS)
    in sqlnet.ora if on windows.
    2. Add user again to the dba group

    I am talking about no secure environment while the customer buy an application and shlud not conenct to the database directly, he can only connect to the database by useing the application. Is that possible? Thanks

  2. If an administrative users belongs to the “dba” group on Unix, or the “ORA_DBA” (ORA_sid_DBA) group on Windows, he/she can connect using
    “connect / as sysdba”

    So make sure user can’t add to the dba group

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s

%d bloggers like this: