ACLs in a Failsafe/data guard environment

Hi,
We have recently upgraded to Oracle Enterprise Edition 11.2.0.3
We had a slight issue with a few batch processes which sent success emails - we hadn't configured ACL permissions (We knew about it, and was on the log, but somehow got missed). All set up fine now in our test environment, but got a couple of queries before I set up in production.
Had a look in the documentation and tried searching
The ACLs I believe are managed as an XML file, on the database server, correct?
If so, how do we manage this on both a clustered, and a data guard environment? Or in the case of a database restore? Is the ACL file automagically regenerated out of some database metadata? Or do we need to recreate in each environment?
Any ideas?
Cheers,
Carl

Hi,
there is two ACL(Access Control List) one at Db level ans one is used at UNIX command for file permission , as you mentioned you have permission issue in batch execution.
so you can check below link
http://www.dartmouth.edu/~rc/help/faq/permissions.html
i am not sure which ACL you required.

Similar Messages

  • WLS 10.3.x setup in Data Guard environment

    Hi all,
    We are setting up the following environment:
    Oracle Database 11.2.0.2 EE RAC primary and physical standby
    WebLogic Server (WLS) 10.3.0
    We are using MultiDataSource (MDS) per the documentation which is fine. However, this setup requires the data sources to specify the RAC hostnames (VIPs), instance names, and the service name. Per various documents we are not using the SCAN hostname. Considering this is a phsyical data guard environment, how do we set this up so we can have the best 'seamless' transfer of the WLS envrionment when a switchover or failover occurs from the primary to the standby database?
    Thus far we've discussed using instead of the RAC virtual hostname (racprd1), a DNS cname (wls-racnode1) which points to racprd1, but we would modify in the DNS to point to racstby1 when a DG switch or failover occurs.
    Any thoughts or recommendations otherwise?
    Thanks.

    OK...
    Alter database rename should be ok As long as both the PRIMARY directory strucures are same or if you have set the parameter db_file_name_convert
    While asking a question..
    You should post all the necessary information for us to help(is possible)
    1.Oracle version
    2.Os version
    Thread spesific
    3.Directory strucutrs of Both Priimary and Standby
    4.Init .Ora of both PRIMARY AND STANDBY

  • Switchover in a data guard environment using Grid Control 10.2.0.3

    I've tested switchover in a data guard environment using Data Guard Broker in Grid Control.
    However, at times, i receive the message "RemoteOperationException: failed to establish input streaming thread". It looks like it has problems connecting to the remote node using the host credentials supplied. I know the credentials are ok because this worked before. If i test preferred credentials, it's ok too..
    The workaround has been to restart the database and this seems to work.
    Has anyone experienced this?

    Thanks for All for replying.
    *1. How can I upgrade my Grid control 10.2.0.3 to 10.2.0.4?*
    I have upgraded the Grid Control Agent and OMS from 10.2.0.3 to 10.2.0.4
    When we upgrade the OMS which also upgrade the Repository database.
    Apply the patchset p3731593_10204_Linux-x86-64.zip (Which comes with Grid_Control_10.2.0.4.0_Linux-x86-64.zip)
    su - oracle
    cd 3731593/Disk1
    ./runInstaller (Run two times for Agent and oms upgrade)
    Agent upgrade_
    During upgrade
    Specify Home Details: Select the Agent Home to upgrade Grid Control Agent.
    Ex: /u01/app/oracle/OracleHomes/agent10g
    OMS upgrade+
    Specify Home Details: Select the oms home to upgrade oms
    Ex: /u01/app/oracle/OracleHomes/oms10g
    *2. How can I monitor/Connect my Existing database 10.2.0.4 from Grid Control 10.2.0.3?*
    Install Grid Agent on the existing database server 10.2.0.4
    Download Linux_x86_64_Grid_Control_agent_download_10_2_0_4_0.zip from OTN http://www.oracle.com/technology/software/products/oem/htdocs/agentsoft.html
    su - oracle
    cd /u01/software/GridAgent/linux_x64/agent
    ./runInstaller
    Refer:
    [To Install an Additional Management Agent Using OUI|http://download.oracle.com/docs/cd/B16240_01/doc/install.102/e10953/installing_em.htm#sthref318]
    Oracle® Enterprise Manager Grid Control Installation and Basic Configuration
    10g Release 4 (10.2.0.4)
    Part Number E10953-05
    3 Installing Enterprise Manager
    Thanks
    Mukarram Khan
    Edited by: Mukarram Khan on Feb 6, 2009 11:04 PM

  • How many physical standbys can be created in one data guard environment?

    Hi Experts,
    How many physical standbys can be created from primary in one data guard environment? Why LOG_ARCHIVE_CONFIG limits up to 9 unique database names? Thanks.

    Victor Jin-Oracle wrote:
    Hi Experts,
    How many physical standbys can be created from primary in one data guard environment? Why LOG_ARCHIVE_CONFIG limits up to 9 unique database names? Thanks.
    Post the source of your information abouit the limit of 9 names.
    Even the Oracle doc shows 1..30 names in the same provided although that doesn't necessarily indicate a limit.
    https://docs.oracle.com/database/121/REFRN/refrn10237.htm

  • Oracle 11g Goldengate working in a Data Guard environment

    Hey Guys, I have the following setup:
    Oracle 11.2.0.4.4 running on RHEL 6.6 64-bit
    3 node RAC Primary
    Single-node Standby with GI (Oracle Restart)
    4 DBs on Primary - AA, BB, CC and DD
    4 DBs running in Active Standby - AADR, BBDR, CCDR and DDDR
    Databases AA and BB replicate schemas into CC, which is a Reporting/Operational Data Store. GoldenGate 11.2.x is used for the replication
    XAG used for Goldengate HA
    All good here with the Primary DBs and replication humming along quite nicely.
    I have questions as part of building the DR environment. How should this work? As part of the real-time apply and active standby, CCDR should keep pace with the replicated primary DB CC. Now from a role transition perspective, I need to be have the GoldenGate software installed and configured on the Standby Server for starting the processes.
    Question 1: When the role transition happens, based on the data guard role, I could well have a system trigger to spawn off a shell script that starts off the goldengate processes. Would this be the correct approach?
    Question 2: Do I need to worry about setting/starting the extract/replicat from a specific CSN? The checkpoint table will be kept in sync as part of the SQL apply, so would just starting the extract and replicat process on the new Primary (old DR) work?
    I am unable to get any pointers on this in Metalink. Would appreciate anyone could point me to a MOS document that talks about using GG and Data Guard together.
    Thanks

    On the first day, there is no backup to recover. It is only on the third day's run that this command will really be successful.
    The white paper does explain this.
    Hemant K Chitale

  • Applying recommended patch bundles to a Data Guard environment.

    I've learned that there are 3 recommended patch bundles for 10.2.0.4 Data Guard, as follows:
    7937113 - 10.2.0.4 Data Guard Logical Recommended Patch Bundle #1
    7936993 - 10.2.0.4 Data Guard Physical Recommended Patch Bundle #1
    7936793 - 10.2.0.4 Data Guard Broker Recommended Patch Bundle #1
    My question is this...should I apply the logical and physical patch bundles to the primary database as well?
    Thanks,
    Michael Anderson
    OCP - Bank of the West

    That's what I suspected. Now, in my environment, I could never conceive of a situation where I would switch roles between the primary and the logical standby database, so I would only apply the DG physical patch bundle to the primary database but not the DG Logical patch bundle. Agree?

  • Multiple Location of datafiles in Data Guard Environment

    I have Data Guard setup in my oracle 10g database. Uptil now , all the datafiles were at same location, therefore db_file parameter setting in pfile was fine. Now I want to move my few of the datafiles at another location. Say, few of my datafiles would be in F:\ and some of them in G:\. How do I now set db_file parameters in Pfile ?

    OK...
    Alter database rename should be ok As long as both the PRIMARY directory strucures are same or if you have set the parameter db_file_name_convert
    While asking a question..
    You should post all the necessary information for us to help(is possible)
    1.Oracle version
    2.Os version
    Thread spesific
    3.Directory strucutrs of Both Priimary and Standby
    4.Init .Ora of both PRIMARY AND STANDBY

  • Backuping up a standby database in a Data Guard environment!

    Hello everyone,
    I have set a Data Guard in Oralce 10.2.0 between 2 databases for testing purposes. Each database is located on a different server. I want to schedule an incremental backup of the standby database to do an incremental level_1 backup everyday. I am following this paper:
    [Using Recovery Manager with Oracle Data Guard in Oracle Database 10g|http://www.oracle.com/technetwork/database/features/availability/rman-dataguard-10g-wp-1-129486.pdf]
    but it's really unclear, for me, how this command sequence is constructed:
    RECOVER COPY OF DATABASE WITH TAG ‘OSS’;
    BACKUP DEVICE TYPE DISK INCREMENTAL LEVEL 1 FOR
    RECOVER OF COPY WITH TAG ‘OSS’ DATABASE;
    BACKUP ARCHIVELOG ALL NOT BACKED UP TO SBT;
    BACKUP BACKUPSET ALL;How can I recover a copy of database that wasn't backed up before? When I did that in RMAN, I got the following output:
    Starting recover at 03-APR-11
    allocated channel: ORA_DISK_1
    channel ORA_DISK_1: sid=159 devtype=DISK
    no copy of datafile 1 found to recover
    no copy of datafile 2 found to recover
    no copy of datafile 3 found to recover
    no copy of datafile 4 found to recover
    no copy of datafile 5 found to recover
    Finished recover at 03-APR-11Could anyone please help me understanding this sequence of commands in a simple way to get a better idea of how to backup a standby database?
    Thanks in advance...

    On the first day, there is no backup to recover. It is only on the third day's run that this command will really be successful.
    The white paper does explain this.
    Hemant K Chitale

  • RMAN restore UNTIL SCN in DATA GUARD environment

    Hello,
    OS=RHL5
    DB=11.2.0.3 Primary and 1 Physical STANDBY database.
    I have a huge application changes tomorrow and its possible that I have the requirement to ROLLBACK the database 5 hours back because the application.
    I am thinking to adopt following method from the official Oracle documentation (untilClause):
    STARTUP FORCE MOUNT
    RUN
      SET UNTIL SCN 1418901;  ## Any required SCN number will be used here.
      RESTORE DATABASE;
      RECOVER DATABASE;
    ALTER DATABASE OPEN RESETLOGS;
    I will of course take LEVEL0 backup tonight and LEVEL1 backup before the start of work.
    My humble question to you is that: If this is the correct method I am adopting? and if yes, then what about Physical standby database? Will there something to restore/recover too? or it's not required or standby database need to create again (which I am afraid of)?
    Flash back is not enabled.
    Bundle of thanks for the suggestion.
    Best Regards

    hello John-MK,
    My humble question to you is that: If this is the correct method I am adopting?
    the method is  correct but not the BEST PRACTICE...create a RESTORE POINT instead of using SCN. for example:
    SET UNTIL RESTORE POINT before_app_changes;
    1. drawbacks of using flashback feature are:
    a. you need more disk space
    b. there is CPU overhead associated with flashback log operation
    c.compulsorily need to use fast recovery area and you can not backup flashback log
    d.others..
    but my own opinion, i think the advantage out weight the drawbacks, since you are paying for it already
    2.  if the standby database did not apply redo data past the new resetlogs SCN, then you do not need to re-build. no manual intervention
    HTH
    Tobi

  • Use of Flashback Database in Data guard environments

    11.2.0.3/RHEL 5.8
    I've come across several docs which talk about configuring FLASHBACK DATABASE in dataguard environments. We have several
    Physical standby DBs (Single Instance & RAC) running in our shop.I would like to know two or three major(common) use of FLASHBACK DATABASE in data guard environments.
    I understood one use mentioned in the below URL ie. recovering from a logical mistake
    http://uhesse.com/2010/08/06/using-flashback-in-a-data-guard-environment/
    I would like to know what are the other major/common use of Flashback Database feauture in DataGuard environment

    A couple of other uses:
    1) You can use flashback to test your DR. So you can activate your standby. Test application/network connectivity and functionality on your DR site and when done revert this database back to a physical standby. You do however have to ensure that this is allowed in your environment. In some places I have worked this would be a big no no as there were zero data loss requirements. However some companies will allow this as long as the standby is back in place within a certain time period.
    2) In the case that you have to do a failover for whatever reason, but then what was the primary site becomes available, you can flashback what was your primary to make it the standby rather than re-instatiating the database from scratch.
    Eg. You have a power outage at your primary site so you perform a failover and your standby becomes the primary. Once what was your primary site is back online, you can convert your previous primary into a standby by doing a full back/restore (or whatever method you choose) to recreate your standby again. However you also have the option of using flashback on this database and then convert it into a standby as this would potentially be quicker than re-instantiating the standby.

  • Data Guard:  net_timeout parameter causing ORA-16163

    Hello all,
    I seem to be having a problem setting up our "TEST" data guard environment.
    First, this is 10.2.0.4 on AIX 5.3.
    My primary and standby databases are set up (with what I thought I had it set before when it was working).
    Now, however, after rebuilding the whole environment again, I seem to be having a problem with the net_timeout parameter used in my "log_archive_dest_2" string.
    When I start my databases as primary/standby, I am getting errors in my primary alert log as:
    Mon Dec 14 10:48:41 2009
    LGWR: Error 16163 creating archivelog file '(DESCRIPTION=(ADDRESS_LIST=(ADDRESS=(PROTOCOL=tcp)(HOST=csctestprd2)(PORT=1521)))(CONNECT_DATA=(SERVICE_NAME=MERCYSTB_XPT)(INSTANCE_NAME=MERCYSTB)(SERVER=dedicated)))'
    Mon Dec 14 10:48:41 2009
    Errors in file /oracle/product/10.2.0/admin/MERCY/bdump/mercy_lgwr_434430.trc:
    ORA-16163: LGWR network server host attach error
    LGWR: Failed to archive log 3 thread 1 sequence 771 (16163)
    From what I've been able to tell, the ORA-16163 is being thrown by the setting of the log_archive_dest_2 "net_timeout" value.
    Even though I have it set to 180, it keeps coming up with a setting of '1' when I show my log_archive_dest_2 parameter.
    What could be causing this to reset itself from 180 to 1 automatically.
    I checked the DG Broker settings, and they seem correct, however, after stopping and restarting the database (and dgmgr), I'm now getting an error when I show database...
    Current status for "MERCY":
    Error: ORA-16797: database is not using a server parameter file

    But, in dgmgrl, it shows it is 180. See below...
    DGMGRL> show database verbose 'MERCY';
    Database
    Name: MERCY
    Role: PRIMARY
    Enabled: YES
    Intended State: ONLINE
    Instance(s):
    MERCY
    Properties:
    InitialConnectIdentifier = 'MERCY'
    ObserverConnectIdentifier = ''
    LogXptMode = 'SYNC'
    Dependency = ''
    DelayMins = '0'
    Binding = 'OPTIONAL'
    MaxFailure = '0'
    MaxConnections = '1'
    ReopenSecs = '300'
    NetTimeout = '180'
    LogShipping = 'ON'
    PreferredApplyInstance = ''
    ApplyInstanceTimeout = '0'
    ApplyParallel = 'AUTO'
    StandbyFileManagement = 'AUTO'
    ArchiveLagTarget = '0'
    LogArchiveMaxProcesses = '4'
    LogArchiveMinSucceedDest = '1'
    DbFileNameConvert = ''
    LogFileNameConvert = ''
    FastStartFailoverTarget = ''
    StatusReport = '(monitor)'
    InconsistentProperties = '(monitor)'
    InconsistentLogXptProps = '(monitor)'
    SendQEntries = '(monitor)'
    LogXptStatus = '(monitor)'
    RecvQEntries = '(monitor)'
    HostName = 'csctestprd1'
    SidName = 'MERCY'
    LocalListenerAddress = '(ADDRESS=(PROTOCOL=tcp)(HOST=csctestprd1)(PORT=1521))'
    StandbyArchiveLocation = 'dgsby_MERCY'
    AlternateLocation = ''
    LogArchiveTrace = '0'
    LogArchiveFormat = '%t_%s_%r.arc'
    LatestLog = '(monitor)'
    TopWaitEvents = '(monitor)'
    Current status for "MERCY":
    Error: ORA-16778: redo transport error for one or more databases

  • Data Guard: db_file_name_convert/log_file_name_convert when using ASM/OMF

    All,
    I have a call currently open with Oracle regarding the setting of the parameters db_file_name_convert and log_file_name_convert in a data guard environment. We use ASM / OMF for storage and file naming and my question is basically do these parameters have to be set. The documentation says they do where the file structure is different between PRIMARY and STANDBY.
    I have successfully tested failover and switchover without these parameters. I have also added a new tablespace on the PRIMARY and watched it create a new OMF datafile on standby when the logs are switched.
    I just can't see a reason for setting them when using ASM / OMF.
    I'm hoping someone can enlighten me here because I'm getting nowhere whith support. The following is our Data Guard setup:
    PRIMARY
    DB_NAME=IBSLIVE
    DB_UNIQUE_NAME=IBSLIVE
    ASM Disk Groups:
    +PRODDATA (Data Files, Control Files, Redo Logs)
    +PRODFLASH (Archive Logs, Flashback Logs, RMAN backups)
    +PRODLOGS (Multiplexed Control & Redo Logs)
    STANDBY
    DB_NAME=IBSLIVE
    DB_UNIQUE_NAME=IBSDR
    ASM Disk Groups:
    +DRDATA (Data Files, Control Files, Redo Logs)
    +DRFLASH (Archive Logs, Flashback Logs, RMAN backups)
    +DRREDO (Multiplexed Control & Redo Logs)
    Many Thanks,
    Ian.

    Ian,
    I'm having similar thoughts.
    I have created a new instance with files in asm under +datadisk/obosact (this is the smae name as primary)
    I then modify the db_unique_name from obosact to obosactdr as is required for standby to work
    When I recover (duplicate target database for standby; ) I find that the files are in datadisk/obosactdr not in the datadisk/obosact area
    I found this reference http://www.oracle.com/technology/deploy/availability/pdf/MAA_WP_10g_RACPrimaryRACPhysicalStandby.pdf
    4. Connect to the ASM instance on one standby host, and create a directory within the DATA disk group that has the same name as the DB_UNIQUE_NAME of the standby database. For example: SQL> ALTER DISKGROUP data ADD DIRECTORY '+DATA/BOSTON';
    This step seems to indicate that the location of the files is determined by the db_unique_name not the db_file_name_convert paramenter
    DId you ever resolve the issue?

  • Oracle 11g Active Data Guard help ?

    Hi Friends,
    I successfully setup an Active data guard environment(11g). But, I dont know when the PROD database is highly utilize , its read only tasks like reporting and backup are doing in STANDBY. How can I know which db (prod or stand by) is used for these readonly operations ?
    Regards
    Vish

    It is not so simple to direct reports to the Physical Standby as you seem to assume.
    You need to do some work for the setup.
    See here for a description:
    http://uhesse.com/downloads/real-time-query-presentation/
    Kind regards
    Uwe Hesse
    Don't believe it, test it!"
    http://uhesse.com

  • Active data guard - patching

    Hi Gurus,
    I have primary db amsprd and active data guard amsprd_stby.
    we are planning to apply application patches in amsprd. earlier we used to rely on rman backup for restore in case of any failures.
    I would like to make use of standby as primary and keep the business up immediately after application patch failures.(to reduce the downtime - application failures are not having any rollback steps :-( - vendor product).
    to achieve this,
    before application patch application
    do i have to just stop the log shipping?
    or do i have to stop just log file apply?
    what are the steps involved in case of primary applicaiton patching failures.
    Thank you.

    So the Application Patch may turn out as a "Logical Mistake" from the Database perspective.
    One option would be to stop the Apply on the Standby Database. If your Application Patch was no good, you could do an "Immediate Failover" which will open the Standby immediately without applying the received redo first like an ordinary Failover would. You would have to create a new Standby Database on your Ex Primary site then.
    Another option would be to turn on Flashback Logging on both sites. If your Application Patch was ok - nothing to do. If not, flashback both sites to before the App Patch. Look here for an example:
    http://uhesse.wordpress.com/oracle-database-ha-architecture/2010/08/06/using-flashback-in-a-data-guard-environment/
    Second option has the benefit that you do not delay an emergency failover, should your Primary incidentally get destroyed during the App Patch. Also, if you need to rewind the Logical Mistake, you do not need to recreate the Standby completely. If you are on 11gR2, you can even turn on/off Flashback Logging without having to restart:
    http://uhesse.wordpress.com/2010/06/25/turning-flashback-database-on-off-with-instance-in-status-open/
    Kind regards
    Uwe Hesse
    http://uhesse.wordpress.com

  • Oracle10gR2-Data Guard

    I want to configure Oracle10gR2 Data Guard for the following scenario:
    •     In a Data Guard environment, we want to configure One Primary Server and Two Standby databases.
    •     The Primary server will be using the internal hard drives for storage (operating system, Oracle, production database, logs, etc).
    •     The First Standby database server will be connected to the Primary Server on LAN. This server will be using the SAN as its storage. The internal drives will be used for the operating system only.
    •     The Second Standby Database would be hosted in a Remote site and connected through Optical Fiber. This database server will also use SAN as its storage.
    Any body can help me out if there are any issues regarding SAN in a data guard environment?
    Regards

    No issues.

Maybe you are looking for

  • ITunes will not open - hangs up every time

    I am running os x 10.8.5, on a mac book pro 2.4 ghz intel core 2 duo.  iTunes will NOT open and run.  It starts up, then hangs, nonresponsive, every single time.  NOTE - I already reinstalled iTunes, to no avail. 

  • Duplicate and remove MC's

    I have created a flash movie using actionscript 2.0 when the movie loads, stars burst out from another movie clip in all directions and then the alpha value is pulled down until they are transparent and at that point they are removed, however i need

  • Windows 2012 R2 - ReFS - Can not delete file with invaild name

    I have a file, its name is ÿÿÿÿ.out its in a network share.  its causing the backups to fail on it because its invalid. in the past on NTFS i would just run chkdsk and then it would fix something like this.  but can't do that on this. Chkdsk just say

  • No sound when previewing music or movies in Finder

    Hello everybody, I recently had my hard drive crash and had to get a replacement drive, reinstall windows, and migrate my backup clone back to the hard drive. Everything is running fine, except for some reason I can't hear any sound, or see any video

  • Referencing values in separate class.

    I have a JTabbedPane that calls two different classes...one to display a calendar, and one to display some text boxes. The class that creates the text boxes needs values from the class that creates the calendar. How would I go about doing this? For e