database security

Security Technology Center

updated November 25, 2008

Oracle delivers secure infrastructure through a wide range of products, processes, and technologies to help prevent unauthorized access to confidential information, reduce the cost of managing users, and facilitate privacy management.

View the most recent Critical Patch Update Advisory (October 2008)

What's New
Live Webcast Series: Database Security (Dec-Jan)
Join us for our upcoming series of live Database Security web seminars to learn how Oracle can help you quickly deploy effective strategies to safeguard your corporate data:
• Protecting Data Privacy in Production and Non-Production Environments - Thurs., Dec. 11, 11am PT or Thurs., Jan. 8, 2009, 11am PT
• Comprehensive Controls to Prevent and Detect Database Breaches - Thurs., Dec. 18, 11am PT or Thurs., Jan. 15, 2009, 11am PT

Download: Free Oracle Advanced Security Resource Kit
Oracle Advanced Security provides a complete database encryption solution, including encryption at rest, encryption in transit, encrypted backups and exports, as well as built-in encryption key management. Download the free Oracle Advanced Security Resource kit, including an iSeminar with Forrester Research, real customer snapshots, step-by-step tutorials, and more, to help your organization safeguard data privacy and comply with regulatory mandates.

How-To: Set Up X509 Certificate Authentication for Oracle WebLogic Server
Create a custom user name mapper class that maps various certificate attributes to a user in your security realm that you can then authenticate and use to restrict or allow access to your application&mdashas well as learn how to properly configure WebLogic Server for this purpose.

Technical Article: Authorizing Access to Dynamic Spatial-Temporal Data
Authorizing access to individual data objects based on spatial and temporal references is a complex task. Read this case study to learn one feasible approach.

Tutorial: Defending Against SQL Injection Attacks
By taking this self-study tutorial, you can arm yourself with techniques and tools to strengthen your code and applications against SQL Injection attacks.


Documentation and Best Practices
Critical Patch Update Implementation (PDF)
Oracle Database Security Guide
Oracle Containers for J2EE Security Guide
Web Services Security Guide
Achieving Sarbanes-Oxley Compliance with Oracle Identity Management (PDF)

Community Content
Learn Database Security Best Practices: Project Lockdown
How To Encrypt Data in Oracle Using PHP
Securing a .NET Application on the Oracle Database
Understanding Transparent Data Encryption
Database Security: Beyond the Password
Using VPD in an Oracle HTML DB Application
Encrypt Your Data Assets
Fine-Grained Auditing in Oracle Database 10g (3-part series)
Oracle 10g Virtual Private Database in Action
More Security Articles...

 
Left Curve
Security Technology
Right Curve
· Database Platform Security
· Application Server Platform Security
·
·

Left Curve
Security Downloads
Right Curve

Left Curve
Security Response
Right Curve
·
· Security Vulnerability Fixes - Policy and Process
· Critical Patch Update Implementation Best Practices (PDF)

Left Curve
Discussions
Right Curve
Untitled Document
Re: Understand audit log 933
Nov 27, 2008
by: user10659644
Re: Understand audit log 933
Nov 27, 2008
by: user10659644
Understand audit log 933
Nov 27, 2008
by: user10659644
about AUDIT_SYSLOG_LEVEL para...
Nov 27, 2008
by: terbas
Re: XML Security - How to sign...
Nov 25, 2008
by: vielinko

Left Curve
Security/IdM Blogs
Right Curve
· Mary Ann Davidson (Oracle CSO)
· Clayton Donley
· Xander Heemskerk
· Phil Hunt
· Nishant Kaushik
· Mark Wilcox
· Security Inside Out
· Security Management Team

Left Curve
Podcasts
Right Curve
 · Mary Ann Davidson Interview Play!
 · Identity Management: Standards Play!
 · Identity Management: Application-Centric Identity Management Play!
 · Identity Management: Attestation Play!
 · Identity Management: Virtual Directories Play!
 · Identity Management: Fine-Grained Authorization Play!
E-mail this page
Printer View Printer View
Oracle Is The Information Company About Oracle | Oracle RSS Feeds | Careers | Contact Us | Site Maps | Legal Notices | Terms of Use | Privacy