Disable login as sysdba without password

Hi,
we are hosting our environment externally with a hosting company and wanted to know if there was anyway of disabling (from within the database) login "/ as sysdba" without having to provide a password.
The scenario we are trying to avoid is a malicious OS administrator putting themselves into the dba/ora_dba group and then setting the sqlnet.ora parameter SQLNET.AUTHENTICATION_SERVICES = (NTS) and then being able to login to the database without out having to provide a password and being able to view very sensitive data??
any help much appreciated.

It sounds like you have a managed hosting company. You need to discuss with the hosting company what types of access they need in order to perform their management functions and limit the admins at the hosting company to an account that does not allow them to add them selves to the dba/ora_dba group or perform any other functions that you do not wish them to perform.

Similar Messages

  • How can i find out how many users can login as sysdba using password file

    can any one please tell me how can i find out how many users can login as sysdba using password file
    please reply
    asif

    SYS@db102 SQL> select * from v$pwfile_users;
    USERNAME                       SYSDB SYSOP
    SYS                            TRUE  TRUE
    SYS@db102 SQL>                                  

  • The user which does not exist can login BI Answers without password

    Hi I got an Issue in the BI Answers login.
    Any non-exist username can login to the BI answers without password.
    And the exist-user need the correct password.
    Does anybody have the same issue before?
    And also, any non-exist username can login to BI Answers if the password is provided as the same as username, even the user account doesn't exist.
    After the non-exist user login, the system would automatilly create this user account.
    Edited by: Jinfeng Ling on Dec 19, 2008 7:04 AM

    Hi Madan
    The Security Section in my NQSConfig.INI file is following:
    # Security Section
    # Legal value for DEFAULT_PRIVILEGES are:
    # NONE READ
    [ SECURITY ]
    DEFAULT_PRIVILEGES = READ;
    PROJECT_INACCESSIBLE_COLUMN_AS_NULL     =     NO;
    MINIMUM_PASSWORD_LENGTH     =     0;
    #SSL=NO;
    #SSL_CERTIFICATE_FILE="servercert.pem";
    #SSL_PRIVATE_KEY_FILE="serverkey.pem";
    #SSL_PK_PASSPHRASE_FILE="serverpwd.txt";
    #SSL_PK_PASSPHRASE_PROGRAM="sitepwd.exe";
    #SSL_VERIFY_PEER=NO;
    #SSL_CA_CERTIFICATE_DIR="CACertDIR";
    #SSL_CA_CERTIFICATE_FILE="CACertFile";
    #SSL_TRUSTED_PEER_DNS="";
    #SSL_CERT_VERIFICATION_DEPTH=9;
    #SSL_CIPHER_LIST="";
    # There are 3 types of authentication. The default is NQS
    # You can select only one of them
    #----- 1 -----
    #AUTHENTICATION_TYPE = NQS; // optional and default
    #----- 2 -----
    #AUTHENTICATION_TYPE = DATABASE;
    # [ DATABASE ]
    # DATABASE = "some_data_base";
    #----- 3 -----
    #AUTHENTICATION_TYPE = BYPASS_NQS;
    Can you see any problem?
    Thanks!
    Jinfeng

  • Login as sys without supplying the password from the db host

    Hi
    I have tried today to login into the database as sys user and was able to login by providing a blank password. I tired this from sql plus installed in the db host. Why is the db allowing users to login as sys users with blank password? isnt this a authenticatio issue? is there any explanation or usage of this faciltiy.
    Also i have tested to connect using another db user "as sysdba" and got connected with blank password.
    Regards
    Mahesh

    If you connected to server with oracle user, or with user who is owner of Oracle Software, then it means that you're the administrator and you can connect to database without password
    Please refer to documentation for more information
    [Selecting an Authentication Method|http://download.oracle.com/docs/cd/B19306_01/server.102/b14231/dba.htm#i1006628]
    Kamran Agayev A. (10g OCP)
    http://kamranagayev.wordpress.com

  • Trying to disable login passwords.

    I know most people want to have as secure a computer as possible. However, in my case, it would be beneficial to allow user switching without having to input a password (it's a long story). I have fast user switching set up and don't at all mind the login screen. But is there anyway to disable the need for these passwords? Granted, I wish to maintain the administrator password so I am the only one who can change system preferences and such. Any suggestions?
    Thank you.

    I don't think there is a way to disable passwords. If there was, that would be a good way for a hacker to compromise a Mac.
    If you really want to make passwords irrelevant for non-admin users (you can do it for admin users too but it would not be a good idea), why don't you just use a password (on all those accounts) that everyone can remember, like 1234.

  • How can i fix my disabled ipod on itunes without the password?

    How can I fix my disabled ipod on itunes without the password?

    See Here
    http://support.apple.com/kb/HT1808
    If you cannot remember the passcode, you will need to restore your device on the computer that you Usually Sync with...
    Wrong Pass Code
    http://support.apple.com/kb/HT1212

  • Is it possible to login into the Java instance without password's input, using only my Windows workstation authorization?

    Dear Sirs,
    I try to do an authorization to my NW 7.3 Java instance through my Windows domain authorization.
    I done:
    1) Create connection to LDAP-server and tested it.
    2) Add windows domain certificate to TrustedCAs
    3) Configure SPnego
    Now, I can to login in my NW7.3 Java instance with my windows password, but however I must to input password when I open NW7.3 Java homepage.
    Is it possible to login into the Java instance without password's input, using my windows workstation login/password?
    What I have to do for that?
    I use Windows XP on my workstation and IE 8.0.6 & Chrome 38.0.2125.
    Best regards,
    Alexey Lugovskoy

    Please check
    Using Kerberos Authentication on SAP NetWeaver AS Java - User Authentication and Single Sign-On - SAP Library (NW7.3)
    Using Kerberos Authentication for Single Sign-On - User Authentication and Single Sign-On - SAP Library (NW7.0)

  • Why does more users can login as sysdba than specified in password file

    I have multiple databases using same password file which has five entries for sysdba, but i have more than five users who have sysdba right and all of them can simultaneously login as sysdba, can any one explain why

    How do your users connect ? You may have any number of users connected locally as sysdba. Local connections are authenticated by OS, no password file is used.
    Moreover, the five entries of password file have to be intended as DISTINCT users, but you may have a much higher number of connections.

  • Hey guys how to delete my disabled iCloud account on my iPad Air without password

    help me guys to delete my disabled iCloud account without password? Thanks.

    You will have to try to recover the password or contact Apple for help.
    https://iforgot.apple.com/
    IF you still cannot recover it, contact Apple according to the instructions here.
    Apple ID: Contacting Apple for help with Apple ID account security - Apple Support

  • Completely disable login with my Skype account and password

    I have set up my Microsoft Account to use two step authentication. Is there any way to completely disable login with my Skype account and password? Otherwise the additional layer of security would be wasted. I have changed my Skype account password to a very strong one, but still...
    Mod edit: [Title to reflect a separate Topic]

    kpkmohomed wrote:
    hello sir/madam,
    I'm using my skype everyday. but unfortunatly today i cant login to my skype. my skype id was kpkmohoed.once i ytry to login to skype i'm getting error message saying [ Sorry, we didn't recognize your sign-in details. please check your skype name and password, then try again.]. i tried to reeset my password, but i cant remind which email used to creat skype account. i have very important cntact in my skype so please make sure i  need a help from you.
    Thank you
    Nawfel Mohomed
    (Sri Lanka)
    Open the link below and just select the appropriate option/category in your case.
    https://support.skype.com/en/faq/FA109/i-ve-forgotten-my-password
    please also be advised that you may be asked to provide verification details or answer verification questions before Skype can proceed in assisting you resetting your account password.
    CONTACT SKYPE CUSTOMER SERVICE   |  HOW TO RECORD SKYPE VIDEO CALLS  | HOW TO HANDLE SUPICIOUS CALLS AND MESSAGES   |  WINDOWS PROBLEMS TROUBLESHOOTING   |  SKYPE DOWNLOAD LINKS  
    MORE TIPS, TRICKS AND UPDATES AT
    skypefordummies.blogspot.com

  • How to disable purchases without password

    Purchases can now be done from my Ipod touch without password. How do I change the settings to require password for all purchases, but allow free downloads?

    A password is required for all app purchases, free pr paod inclided updateds.  Once you enter your password, you will not have to reenter it for about 15 minutes.  You can go to Settings>General>Resetrictions and set restrictions that prevent app purchases, prevent in-app purchases, and require a password for in-app purchases.

  • Login as sysdba problem...

    Hi,
    I've created my own database to make tests on Oracle and directly after that I've changed the passwords for all the users (sys and system users included).
    When I try to login without the sysdba role, Oracle applies the password verification fine.
    The problem is when I try to login as sysdba:
    $> sqlplus 'sys as sysdba'
    I can enter whatever password I want and I'm connected !!!
    And it's the same if first I type:
    $> sqlplus /NOLOG
    SQL*Plus: Release 9.2.0.1.0 - Production on Wed May 7 13:21:44 2003
    Copyright (c) 1982, 2002, Oracle Corporation. All rights reserved.
    SQL> connect sys as sysdba
    Could someone help me to find where It comes from and how I do solve this security hole...
    Thanks in advance
    Paul

    What's the OS? Are you signed on to the OS as a user in > the DBA group?I'm using a Debian 3.0 (Woody) operating system with a Linux 2.4.18 kernel
    I've got only one user which is a member of the DBA group and what I experienced, It's true, was only when I was logged as this user...
    Does it means that when a user is a member of the DBA group on the operating system, even if the remote_os_authent parameter is set to false, he can login with sys as sysdba as he wants trough sqlplus ?
    +++++++++++++++++++++++++++++++
    Original message:
    Hi,
    I've created my own database to make tests on Oracle and directly after that I've changed the passwords for all the users (sys and system users included).
    When I try to login without the sysdba role, Oracle applies the password verification fine.
    The problem is when I try to login as sysdba:
    $> sqlplus 'sys as sysdba'
    I can enter whatever password I want and I'm connected !!!
    And it's the same if first I type:
    $> sqlplus /NOLOG
    SQL*Plus: Release 9.2.0.1.0 - Production on Wed May 7 13:21:44 2003
    Copyright (c) 1982, 2002, Oracle Corporation. All rights reserved.
    SQL> connect sys as sysdba
    Could someone help me to find where It comes from and how I do solve this security hole...
    Thanks in advance
    Paul
    +++++++++++++++++++++++++++++++

  • Multiple accounts without passwords

    Are you able to switch between accounts without entering a user password? Automatic login is enabled for both users in account settings. However, passwords are required for both users. In security, automatic login is not disabled. Thanks

    {quote} Automatic login is enabled for both users in account settings{quote}
    I'm not sure how this is possible. The login options can only choose one "Automatic Login" user.
    I also don't understand your header and the text. Header says multiple accounts without passwords, but text says passwords are required for both users.

  • IPhone5 can access guest network without password

    I have just finished setting up the Cisco Valet M20 and tried to access the "guest network" using password. All devices connected to "guest network" were taken to a login screen for a password. All except the iPhone5. The phone was able to have connect wirelessly without having to go to the login screen and enter the guest password. I have tried changing "guest network's" password and resetting the network configuration of my iPhone5, still the same result.  My laptop, iPad and andriod phone did go  through the login screen for password. Is there a fix to this problem? 

    Since other wireless devices were working thru the guest network as they should, I believe it has something to do with the IPhone5. How about you try this workaround: disable the guest network, turn the M20 off for 10-15 seconds, once you power it back on, access the cisco connect software again and enable the guest network. On your iphone, try to reset the network settings again then try to connect to the guest network.

  • My Apple ID is saying its disabled. I reset my password and connected to computer but still not working. I also logged of and logged back on with my iPad. Any suggestions?

    My Apple ID is saying its disabled. I reset my password, connected it to a computer, and logged off and back on my iPad but still showing disabled. Suggestions?

    If the iPad was running iOS 7,  iCloud: Find My iPhone Activation Lock in iOS 7
    http://support.apple.com/kb/HT5818
    How can I unlock my iPad if I forgot the passcode?
    http://www.everymac.com/systems/apple/ipad/ipad-troubleshooting-repair-faq/ipad- how-to-unlock-open-forgot-code-passcode-password-login.html
    iOS: Device disabled after entering wrong passcode
    http://support.apple.com/kb/ht1212
    How can I unlock my iPad if I forgot the passcode?
    http://tinyurl.com/7ndy8tb
    How to Reset a Forgotten Password for an iOS Device
    http://www.wikihow.com/Reset-a-Forgotten-Password-for-an-iOS-Device
    Using iPhone/iPad Recovery Mode
    http://ipod.about.com/od/iphonetroubleshooting/a/Iphone-Recovery-Mode.htm
    You may have to do this several times.
    Saw this solution on another post about an iPad in a school environment. Might work on your iPad so you won't lose everything.
    ~~~~~~~~~~~~~
    ‘iPad is disabled’ fix without resetting using iTunes
    Today I met my match with an iPad that had a passcode entered too many times, resulting in it displaying the message ‘iPad is disabled – Connect to iTunes’. This was a student iPad and since they use Notability for most of their work there was a chance that her files were not all backed up to the cloud. I really wanted to just re-activate the iPad instead of totally resetting it back to our default image.
    I reached out to my PLN on Twitter and had some help from a few people through retweets and a couple of clarification tweets. I love that so many are willing to help out so quickly. Through this I also learned that I look like Lt. Riker from Star Trek (thanks @FillineMachine).
    Through some trial and error (and a little sheer luck), I was able to reactivate the iPad without loosing any data. Note, this will only work on the computer it last synced with. Here’s how:
    1. Configurator is useless in reactivating a locked iPad. You will only be able to completely reformat the iPad using Configurator. If that’s ok with you, go for it – otherwise don’t waste your time trying to figure it out.
    2. Open iTunes with the iPad disconnected.
    3. Connect the iPad to the computer and wait for it to show up in the devices section in iTunes.
    4. Click on the iPad name when it appears and you will be given the option to restore a backup or setup as a new iPad (since it is locked).
    5. Click ‘Setup as new iPad’ and then click restore.
    6. The iPad will start backing up before it does the full restore and sync. CANCEL THE BACKUP IMMEDIATELY. You do this by clicking the small x in the status window in iTunes.
    7. When the backup cancels, it immediately starts syncing – cancel this as well using the same small x in the iTunes status window.
    8. The first stage in the restore process unlocks the iPad, you are basically just cancelling out the restore process as soon as it reactivates the iPad.
    If done correctly, you will experience no data loss and the result will be a reactivated iPad. I have now tried this with about 5 iPads that were locked identically by students and each time it worked like a charm.
    ~~~~~~~~~~~~~
    Try it and good luck. You have nothing more to lose if it doesn't work for you.
     Cheers, Tom

Maybe you are looking for

  • Printer not found on airport extreme base station

    Have set up a printer via the USB port on the base station it worked just fine BUT when I switch off the printer and my mac book pro and then restart the printer is no longer avialable / picked up by the base station. I have to restart the base stati

  • Outlook Public Folders- Some Documents Persistently Open Read-Only

    We have been having this issue for a few months. Previously, users could navigate to Public Folders and open Excel or Word documents, make changes, save and close without issue. When this problem first started, users were getting files open as Read O

  • Can not start mysql server

    I recently installed mysql server on my mac os 10.6.8, earlier i had installed XAMPP on my machine but i have uninstalled it(deleted it & ran few commands in terminal), but now when i try to start server from preference pane it doesn't start & not fr

  • How to automatically direct mail from diff POP accts into their own folders

    I use Mail to receive and send mail for 2 different POP accounts. Is it possible when checking for new mail, to have the mail for acc. 1 go into one folder or inbox and mail for acc. 2 go into another one?

  • It's complicated ...developer 10g under IE 8

    Hi, i have developer 10g under vista business under internet explorer 8, i downloaded the newest sun 1.6....16 guess in fact copied the file jvm.dll from sun to jnitiatior 1.3.26 like forums advices.. I applied the last patch 8727236 too, but interne