3rd party database patch...

DBA - say take you over a field of companies, perhaps 60 large databases Oracle Oracle database. Some of these databases relate to put information 3rd party systems developed by a 3rd party. Oracle version say 5 new security fixes for patch known vulnerabilities in a specific version of Oracle. This 3rd party said "we do only support the application when it runs on a set of specific patch", that presumably is a patch level / game they know their application works well on. During a test on a new version of Oracle and the app is to go well, they will then install the patches.

Enter your 3rd pen testers part, use their vulnerability scanner and a large RED finding arrives telling them to report 'x missing patches on this oracle database '. Accept your accounts by someone to install these patches can cause performance problems in the functioning of the application? Is it acceptable to have a vulnerable system in your environment? The fact that the database is internal behind the defensive perimeter a saving grace, it's what happens if non-patched vulnerability could be exploited by the public face frontal of apps. I've never seen much audits/pen tests saying "simply apply the security patch where you can, and it will not affect the availability/functioning of the application", "his patch as soon as possible or you have a vulnerable system", with little room for this sort of thing.

What is your point of view? Any middle ground that will satisfy your security manager or security auditors / or practical work around?

Group of patches are really less frequent, probably every 18 months (but I did not measure it).
Patches are released quarterly: CPU => Critical Patch Update and PSU-online Patch Update are similar. But the power supply includes the CPU of the current quarter and some measures specific patches (in this topic a power supply is a little bigger than CPU), while the CPU was critical fix.
All are the related database.

Nicolas.

Tags: Database

Similar Questions

  • We are in the streams we want to use the tools of replication of database of 3rd party for Oracle freeware. Pls suggest

    We are in the streams we want to use the tools of replication of database of 3rd party for Oracle freeware. Pls suggest

    Hello

    GoldenGate and shareplex are large databases for heteregenous platforms oracle replication tools.

    Shareplex replicates data between heteregenous platforms for example source on Linux and Windows.Shareplex target come from queues so that when we define it a few tables in the configuration of the source files, it will get automatically reproduced in the target database.

    SharePlex 8.6.2 technical documentation

    Concerning

    Rami

  • 3rd party such as san replication solution: strategy

    Dear Experts,

    Can you please share some of your ideas.

    Oracle DataGuard comes free with Oracle Enterprise Edition (EE). The only reason why a company could NOT use Oracle DataGuard is because they are not on the ERA and the cost of upgrading to EE just to use DataGuard does not justify the price.

    With 3rd party such as san replication solution. (for example hp3par)

    It is obvious that the all-flash backup can be quick.

    What should be the strategy to have DR site get a few seconds, if the primary site failed for some reason any

    1. daily incremental backup with RMAN. And archive backup runs for every 1 minutes

    2. so that the DR site facing up and running within 60 seconds, it still requires too much time to restore the database on remote site and have archive APPLIED setpoint

    What could be the solution with san replication? RTO = 60 seconds

    Thanks ivw

    Hello

    Great topic, I'll try to summarize all this in a post.

    I have worked with HP EVA for a few years and I must say that I have used many of the features of replication - HP EVA Business Copy (local replication) and HP EVA continues access (remote replication) as well - for the oracle database and other applications as well. Most storage systems use copy-on-write to create two points in time of the LUN (snapshot) image or clone LUN using cow again.

    Of course, like other people, said earlier the replication SAN is block based, in the same way with Dataguard, you have synchronous and asynchronous replication. When your data is written to the data files it usually goes in storage cache and then is pushed down the disc as soon as it will be more efficient, at the same point, replication is pushing data to the Dominican Republic. The same way with Dataguard if you use synchronous replication that you won't get you "speedy return" until the blocks of primary storage has been written for DR storage system.

    I never had problems with replication to be honest. I used a lot of copy of databases of production using local replication. For example if you want to quickly test a patch on the production system, you can create a snapshot that will only increase with the amount of changes you have made. The only concern is nowadays though we use ASM so if your diskgroup names are the same in DEV that the PROD does not work the approach that I mention.

    Regarding remote replication - because you do not have Dataguard more every time you failover to the Dominican Republic to your database will pass by instance recovery!

    Regardless of the type of replication is not the speed but the latency of the network - SAN or Dataguard, you will always have a penalty of a long replication distance. The biggest typical WAN latency factor is the speed of light, via fiber optic cable, which is about 124 miles per millisecond. Based on that you can calculate what would be the round-trip latency time.

    Indeed for many people SE installation choose DBvisit Standby to manage their databases on hold. I did the installation of the couple and it is really simple and works out of the box. However, your RPO depends on how often you switch your redologs and how many times you ship them to the backup site. You must configure dbvisit to spend with each log file (all the 5,10,15 minutes) OR configure archive_lag_target to configure OR use both at the same time. Also, you can store a copy of the archivelogs on a separate location just in case, for example, an NFS share.

    And finally my five cents on RAC on Clusters of extended - be careful with this one. Each of the nodes in the extended database cluster need access to both storage (primary and DR) systems. You must also third location to store a voting quorum disk, usually an NFS share. It is also very important to note that the latency between the nodes is of crucial importance due to global cache activity.

    Kind regards

    EVS

  • Integration with 3rd Party App

    We currently use a 3rd party called media 1 channel to carry out the investigation or to submit and Enter to Win forms.  Now, that exist outside of the Eloqua platform.  Is there a way to integrate this information?  Have send their form, survey, etc. flow directly in Eloqua.  I talk about them using a form Eloqua and here are their concerns:

    "Eloqua had an open API, we could use to send data in the database? This would probably include a function we call that sends to your server of an object that contains the data that is appropriate; probably json or other type that when received them by your server would be analyzed and added to the critical database.

    If I'm wrong and that you do not have this form of API; in the txt file you provided the submission form called a file, we could potentially call it directly within our applications and Web sites and pass it the correct information, but we need to coordinate the information exactly. In addition we are a validation uncompressed js file so we can ensure that the validation is rewritten correctly to our projects. »

    Hi Megan,

    Eloqua has many options with regard to sending data to the Eloqua system. You can get all data from any system for contacts and send it to Eloqua. Look at the platform of the building on The Eloqua - A Resource Guide to get started. Indeed, if nothing else, you can transfer the form submiited from your site or application data directly in Eloqua and perform various other process forms: overview of processing &.

    I hope this helps.

    Thank you

    Amit

  • How Oracle Clusterware Oracle RAC and 3rd-party Clustering with them

    I have some questions on how Oracle, Oracle RAC and 3rd party clustering CLusterware fit between them.

    Q1. My understanding is that the Infrastructure Grid Oracle Clusterware is Oracle's Clustering solution that allows applications to cluster? that is, it is a general clusterware solution to compete with those already on the market. Is this correct?

    Q2. So why CARS is necessary for the Oracle cluster databases? An Oracle database is not just considered one application like any other? So why can not just use you GI / Clusterware to gather what you would do for any other application? Why so you need RAC to the Clusterware Summit?

    Q3. Is it is possible to combine an Oracle database using 3rd party of clustering and not use Oracle Clusterware and CARS at all that is can you say cluster, an Oracle database using say Sun Clusters, Clustering AIX or Linux native same clustering?

    Q4. If the RAC is purely for Oracle Cluster databases - what is with the title "Real Application Clusters"? What's real on this subject?, what to ask?

    Q5. I also read that RAC can use 3rd party of clustering. However if you decide that this is the case, then you need to install Oracle Clusterware when even (I think for interconnection must be created to allow the merger with Cache between Instances of node?).

    Is this the case?  If yes why never bore you with 3rd party clusters? -Since you will have to install Oracle Clustering anyway - and I probably have to license (all I can think about is the scenario that you already have a cluster of 3rd party in place and you decide that you need to use the same material for a database cluster)?

    All wisdom greatly appreciated,

    Jim

    Yes, with 10g, you had to use the CRS, and with 11g, to use the GI.  For 9i RAC, you would use Verits Cluster and Sun Cluster or anything else.

    11g RAC to GI.  As above, you can use clusterware extra if needed.  I gave the example above where to a 10g RAC we used the CRS to the cluster database/listener/vip and allowing groups of volume and filesystem in HACMP cluster.  File systems were not shared, but could switch to another node failure node, who has been treated by HACMP.  The volume of the groups containing the raw devices were shared volume groups.  For 11g, I never used extra clusterware on top of CRS and have always used ASM which is part of the GI.

    The application provider only certified database to run on 10g on AIX with raw devices.  What is strange about that?  It would be unusual that you probably expect to use ASM instead of raw devices, but it is what it is.

    See the following Note of Oracle for more information: using Oracle Clusterware with vendor Clusterware FAQ (Doc ID 332257.1)

    It is perhaps easier to explain if you can explain what problem you are trying to solve?

  • Quarter playback controls when the 3rd party app plays

    When a 3rd party application plays on my iPhone (Audible, Castro,...), my Apple Watch does not show the playback controls to it. Wait for the watch to show the same controls as the control center on my iPhone. But it shows a Play button and gray < <>> / buttons. Volume controls work well and when I press the play button, the 3rd party app is dimmed and the iOS app music begins to play.

    I'm doing something wrong?

    iPhone 6 s more - iOS 10.0.1

    Apple Watch series 2 - Watch OS 3.0

    Hello

    Audible or Castro iPhone applications currently include an app for Apple Watch:

    I suggest that you see the respective developers support resources and/or consult the developers directly on the contribution of functionlity for their applications on Apple Watch:

  • Hi people. Intend to purchase Apple Watch USA and use it in Europe. Will this be a problem? Can I use only a simple switch of 3rd party? I'm going to hurt same hardware or software?

    Intend to purchase Apple Watch USA and use it in Europe. Will this be a problem? Can I use only a simple switch of 3rd party? I'm going to hurt same hardware or software?

    Hello

    You will be able to use the watch in Europe.

    There is no regional differences in the hardware and the software can be configured to your chosen region. The supplied USB power adapter will have to pine trees located in the United States. A travel adapter will allow you to connect it to the European outlets.

    Alternatively, you can buy an Apple USB power adapter that is located in your country of destination / country.

    For example:

  • Can I install 3rd party in the iPhone?

    How to install Firefox and other applications 3rd party on iPhone?

    3rd party is not possible unless you jailbreak which is not recommended.

  • You can use 3rd party to watch network shows?

    I think to make the new gen 4 tv Apple, you can use 3rd party applications to watch shows like Animal Planet network with Animal Planet app?

    Generally Yes, if the channel provided an application. If it's a cable network, you still need a cable provider to access the internet version, and you can access channels in your package.

  • How can I fix my (3rd party renovated) iPhone 5s which became brick?

    I bought an unlocked iPhone 5s from a 3rd party vendor so that in the United States. I set up with a PAYGO of T-Mobile SIM card and used for two weeks in the United States and two weeks in the Mexico. On or around the day of the month of T-Mobile has expired, the iPhone has stopped working. It does not start (screen lights up, but it is white/black) and trying to do a factory reset with iTunes have failed.

    Not yet bought a SIM card from a local supplier to the Mexico. The SIM card is the problem or is it the phone? Can what additional steps I take to reset? Is there diagnostic tools that will run on Mac OS X or Windows?

    The phone would always start even without a SIM card. I contact the vendor that you bought the and see if they have the warranty at all.

  • Addition of Google Chrome, now Safari does not open, impossible to link electronic mail links.  Just received message "Safari is closed."  Tried deleting 3rd party add ons. Is went into preferences, Safari is the default browser, but it does not open.

    Add Google Chrome, now Safari opens Cannot link e-mail links.  Just received message "Safari is closed."  Tried deleting 3rd party add ons. Is went into preferences, Safari is the default browser, but it does not open.

    Third party extension and plug-ins?

    If Safari is slow, unresponsive, which closes unexpectedly, or has other issues

    The problem may be caused by a Safari Extension, Internet plug-in or another add-on.

    The safari Extensions, Internet plug-ins, and other modules are designed to improve or customize the browsing experience. Modules are widely available on the Internet, and some are installed as part of an application or other software. If you have Add-ons installed, an add-on might be at the root of the issue.

    If the problem is the unwanted pop-up windows, advertisements and graphics while surfing on the web, discover how to remove the ad-injection (adware) from your Mac software.

    Disable the Safari Extensions

    You can disable Extensions Safari to learn if all are causing the problem.

    1. In the Safari menu, choose Preferences.
    2. Click the Extensions icon, and then select an extension from the list.
    3. Uncheck the box enable disable this extension.

    If turning off an extension solves the problem, look for updates of the extension by clicking Update in the lower left corner of the window. Or remove the extension by clicking on the button uninstall.

    Remove Internet plug-ins and other add-ons.

    You can remove Internet plug-ins and other add-ons to see if everything is the origin of the problem. To find them, quit Safari and open these folders in library:

    • The library folder at the top level of your hard drive. Open it from the Finder by choosing go > go to folder in the menu bar. Then type /Library and then click OK.
    • The record library in your home folder. Open it by organizing the Option while choosing go > library in the menu bar.

    The folders in the library contains the following folders for modules. Move all the files in these folders to the trash.

    • Internet Plug-Ins
      Do not remove the default Browser.plugin, nslQTScriptablePlugin.xpt, Composer.webplugin of Quartz or QuickTime Plugin.plugin.
    • Input methods
    • InputManagers
    • ScriptingAdditions

    If the removal of the files in these folders solves the problem, quit Safari again and gradually put the files until you find the one at the origin of the problem:

    1. Open the Recycle Bin and select one of the files that you removed. Chose file > back up. The file back to its folder.
    2. Open Safari and see if the problem returns.
      • If the issue is returned, you have identified the add-on causing the problem. Do not use or contact its manufacturer for an updated version.
      • If the question does not return, quit Safari and put back another file.
  • 3rd party repair

    I got my phone repaired screen and it appears on the screen lifted by the bezzel which caused areas of crack in 3 hairline. I don't have he fell or if she had to crack everything I was doing and I was wondering if I agree consider back in and the set again? I know I have a 12 month warranty on the repair I made.

    If a 3rd party in addition to Apple or a provider authorized service Apple has replaced the screen, Apple may no more phone interview.

    In this case, your only option is the 3rd repair shop of party from here, sorry.

  • I used a 3rd party to move thunderbird files, but do not remember what it's called

    I used a 3rd party program to move my thunderbird files a few years ago, but don't remember what it was. It worked very well and want to use again. I think it was mozip or something like that.

    Sounds like MozBackup.

  • Changes to cookies 3rd party options are not saved

    I want to change the Cookies setting to allow 3rd party cookies because a site important I have access

    often said that my browser (Firefox) does not accept these cookies.

    I'm following the instructions of Support of Firefox @.
    https://support.Mozilla.org/en-us/KB/enable-and-disable-cookies-website-preferences#w_how-do-i-change-

    cookie settings

    Select Options > Privacy tab
    I change the setting in the history of "remember history" to "use the custom for history".
    "Don't forget my browsing and download history" is checked
    "Don't forget to search and form history" are checked

    "Accept cookies" is checked
    "Accept third-party cookies:" is set to always and keep it up: they expire

    There is no button Save so I click OK

    I close Options then reselect it and I'm back to "do not forget history" and there is nothing visible to "accept".

    Cookies' and my important site is still does not open.

    It is obvious that my Option changes have not been saved. It seems that you have a bug that needs fixing.

    Firefox displays "Use the custom settings for history" as an indication that at least one story and cookie settings is not the default to make you aware that the changes have been made.

    If all the history settings are default, custom settings are hidden and see you "conservation rules: (never) don't forget history."

    • "Never remember history" means that private browsing is active and "Always use private browsing mode" Gets a check mark.

    Note that if you disable the parameters of cookie that these changes apply only to new cookies, if you need to delete existing cookies to create new cookies from Firefox.

    Clear the cache and cookies only from Web sites that are causing problems.

    "Clear the Cache":

    • Firefox/tools > Options > advanced > network > content caching Web: 'clear now '.

    'Delete Cookies' sites causing problems:

    • Firefox/tools > Options > privacy > "Use the custom settings for history" > Cookies: "show the Cookies".

    If the deletion of cookies did not help, then it is possible that the cookies.sqlite file that stores the cookies has been corrupted.

    • Rename (or delete) cookies.sqlite (cookies.sqlite.old) and delete the other files of cookies as cookies.sqlite - journal in the profile folder of Firefox in the case where the cookies.sqlite file has been corrupted.
  • Quick response for 3rd party applications stop working after 9.3.2.

    I use an iPhone 6 Plus. Fast response for 3rd party applications, i.e. Whatsapp, Viber etc has stopped working after the update to IOS 9.3.2. I have all 3 keyboards left installed & I use the latest version of Whatsapp.  Quick response works very well with iMessage.

    I restored the phone & quick response worked briefly, but has stopped working again. I contacted Whatsapp, but their response has been that it is a problem with IOS.

    Quick response on 6 of my partner more running IOS 9.3.2 works very well with Whatsapp & my settings are the same as hers.

    I had recently spent with an alphanumeric password to strengthen security on my iPhone when the problem of the quick answer appeared. I've since discovered that switch it on a digital 4-digit password solves the problem.

Maybe you are looking for