System to grant to the user of the application views

Hi all

11.2.0.1

Batch process Tha night encounter problem blocking where their generations report affected and delayed.

I give this command operators, so that they will kill or stop the process that keeps the lock:

SELECT TO_CHAR ("sysdate, ' HH24:MI:SS of MON-DD-YYYY"). ' The user '. S1. UserName | | » @'|| S1.machine | | "(SID = ' | s1.sid |)

') with the statement: ' | sqlt2.sql_text | |' if it blocks the SQL statement ' | S2. UserName | | » @'|| S2.machine |

' (SID ='|) S2.SID | |') Blocked-> SQL ' | sqlt1.sql_text AS blocking_status

GV $ lock l1, Gv$ session s1, Gv$ lock Gv$ session s2, l2, Gv$ sqlt2, Gv sql $ sql sqlt1

WHERE s1.sid = l1.sid

AND s2.sid = l2.sid

AND sqlt1.sql_id = s2.sql_id

AND sqlt2.sql_id = s1.prev_sql_id

AND l1. BLOCK = 1

AND l2.request > 0

AND l1.id1 = l2.id1

AND l2.id2 = l2.id2;

But this needs system views and you can not run the app user ID.

On the security audit decision or without having violated, what I have to grant select to all system views accessed by this script to the user of the application, then create synonyms it 1 by 1?

Or is it a one-time grant for all views of the system? So I is not need to type a plus creating synonyms so that I can't miss any?



Thank you

Petra k.

f55237a7-2c38-4DB3-a7a3-1d77256f0730 wrote:

Hi all

11.2.0.1

Process batch Tha night meets lock problem where their generations report interrupted.

I give this command operators, so that they will kill or stop the process that keeps the lock:

SELECT TO_CHAR ("sysdate, ' HH24:MI:SS of MON-DD-YYYY"). ' The user '. S1. UserName | | » @'|| S1.machine | | "(SID = ' | s1.sid |)

') with the statement: ' | sqlt2.sql_text | |' if it blocks the SQL statement ' | S2. UserName | | » @'|| S2.machine |

' (SID ='|) S2.SID | |') blocked SQL-> ' | sqlt1.sql_text AS blocking_status

GV $ lock l1, Gv$ session s1, Gv$ lock Gv$ session s2, l2, Gv$ sqlt2, Gv sql $ sql sqlt1

WHERE s1.sid = l1.sid

AND s2.sid = l2.sid

AND sqlt1.sql_id = s2.sql_id

AND sqlt2.sql_id = s1.prev_sql_id

AND l1. BLOCK = 1

AND l2.request > 0

AND l1.id1 = l2.id1

AND l2.id2 = l2.id2;

But this needs system views and you can not run the app user ID.

In view of the security check or without having violated, what I give select all system views accessed by this script to the user of the application, and then create the names it 1 by 1?

Or is it a one-time grant for all views of the system? So I no need to type one by one so that I can't miss any?

Thank you

Petra k.

While approach posted will work subsequently, it's like making three left turns around the block;

instead of making a single term of law.

Place the SQL desired in a procedure (FIND_LOCKER) owned by the extremely privileged schema; then do as below

GRANT EXECUTE ON FIND_LOCKER TO OPERATOR_USER;

Tags: Database

Similar Questions

  • Recently, I got a message saying ' not enough system resources to open the application' for example to explore or outlook express.

    ?? Resources

    My computer has been works well, but twice recently, I got a message saying ' not enough system resources to open the application' for example to explore or outlook express. Restarting it works again, but why the message?

    Hi RaymondWilson,

    ·         Did you do changes on the computer before the show?

    Follow these methods.

    Method 1: Follow these steps:

    Step 1: Start the computer in safe mode and check if the problem persists.

    Step 2: If the problem does not still in safe mode, perform a clean boot to see if there is a software conflict as the clean boot helps eliminate software conflicts.

    Note: After completing the steps in the clean boot troubleshooting, follow the section How to configure Windows to use a Normal startup state of the link to return the computer to a Normal startupmode.

    After the clean boot used to resolve the problem, you can follow these steps to configure Windows XP to start normally.

    (a) click Start, run.

    (b) type msconfigand click OK.

    (c) the System Configuration utility dialog box appears.

    (d) click the general tab, click Normal startup - load all services and device drivers and then click OK.

    (e) when you are prompted, click restart to restart the computer.

    Method 2: Perform a System Restore and check the issue persists.

  • Professional Development System: Can not build the Application

    Hello

    I have the LabVIEW Professional Development System 2015 on my computer.   According to National Instruments, this version of LabVIEW has already provided with the Application Builder.  However, when I try to compile a standalone application, I don't have access to the application of the manufacturer. I've referenced the tutorial here and think that I do everything correctly: http://www.ni.com/tutorial/3303/en/#toc1

    If please see the attached screen shot and notice how I do not have the option ' new > application ", as claimed by the my system of professional development tutorial * must * have. How can I access the Application Builder with my professional development system?  Should I enable it?  If so, how should I do this?

    Thank you

    Jason

    Go to OR under the National Instruments License Manager in the Start Menu.

    Make sure it is turned on it.  It should have happened automatically.  But if you had some odd order of installation, or maybe don't have access to the internet when it installed first, that she might leave the hanging of activation.

  • How to exclude subsidies, the role_grant, the materialized view to expdp

    Hi all

    I am making the expdp on a 10g database and import it on 11g:

    Directory system/amandla expdp = respaldos_bd = logfile = nomina_dp.log patterns nomina_dp.dmp dumpfile = nomina exclude = grants, statistics, role_grant, db_link, materialized_view, materialized_view_log

    Now, on the import subsidies, role grants etc are present on dumpfile as seen on warnings such as these:

    ORA-39083: Fallo Creacia³n del tipo object OBJECT_GRANT con el error:

    ORA-01917: el usuario o rol 'NOMINA_ART_SSALUD' doesn't exist

    Procesando el tipo object SCHEMA_EXPORT/TABLE/SCHOLARSHIP/OWNER_GRANT/OBJECT_GRANT

    ORA-39083: Fallo Creacia³n del tipo object OBJECT_GRANT con el error:

    ORA-01917: el usuario o rol 'NOMINA_ART_EOS' doesn't exist

    GRANT SELECT ON "NOMINA". "' CONC_IVSS ' TO 'NOMINA_ART '.

    ORA-39083: Fallo Creacia³n del tipo object OBJECT_GRANT con el error:

    ORA-01917: el usuario o rol 'NOMINA_ART' doesn't exist

    What's not here?

    Thanks in advance!

    Hi Richard,

    Yes you are right, thank you. grant to exclude will remove all subsidies.

    just checked command OPs on 11.2.0.4 and exclure = grants work done and it failed object and system privileges granted to the user as well.

  • all grants to a user

    Hi all

    Can you me the script share how to list EVERYTHING - all roles, objects, privileges granted to a user? say 'HR' to the user.


    Thank you.

    USER_SYS_PRIVS lists all the system privileges granted to a user

    SELECT privilege
      FROM user_sys_privs
     WHERE username = 'HR'
    

    USER_TAB_PRIVS lists all the privileges granted to a user object

    SELECT owner, table_name, privilege
      FROM user_tab_privs
     WHERE grantee = 'HR'
    

    And USER_ROLE_PRIVS lists all the roles that have been granted to a user

    SELECT granted_role
      FROM user_role_privs
     WHERE username = 'HR'
    

    It may become more complex as of here, however, if you want to list all the privileges granted to these roles, the role given to the roles, privileges granted to these roles, etc. recursively. Fortunately, Pete Finnigan has a handy script that implements this logic. You can go down the script of find_all_privs.sql his site.

    And it becomes much more complicated if you want to grant privileges that do not follow the normal patterns. Privileges of Java, for example, network ACL, Workspace Manager privileges, etc.

    Justin

  • Urgent - Custom authentication and authorization for the application of the ADF

    Hi friends,

    Custom implementation for authentication and authorization for the application of the ADF

    My project to use the OID , authentication and authorization, we will need to support both OAM and DB tables ( according to the preferences of the client during the installation ).

    I am new to this and do not have a clue about the same.

    Please guide me how to set up both in JDeveloper 11 g + ADF

    Thanks in advance.

    The answers you got up to present every point in the right direction. ADF security see the authentication of WLS, even for business authorization with respect to user roles defined on the WLS server. During the deployment, ADF security defined application roles are mapped to the user enterprise groups

    Application developed using Jdeveloper ADF +.

    This would use WLS for authentication

    Users of authentication - LDAP (OID) - are stored in LDAP

    Use the OID authentication provider in WLS

    Authorization - OAM or database (authorization details are stored in the DB or OAM tables)

    You can't allow users without authentication. If you need create authentication providers additional if they exist for OAM and RDBMS (there is a supplier of existing RDBMA, that you can use to identify users and to assign membership user groups). Then, you set the optional flag so that when authentication fails for additional providers you can always start the application.

    When running Admin users - create users from roles to create and assign permission privileges to the role (for pages and workflows)
    assign (or remove) the roles to/to leave users.

    ADF security uses JAAS to permissions that you can change using Enterprise Manager when running. Permissions are granted to the application roles and application roles are granted to business roles that which then has users become members of the. If you want to change the status of user account, then you don't do this the ADF or EM, but use a direct access to the provider of the user (for example, access OID, RDBMS access etc.) There is no unified administration API available that would allow you to do this via WLS (which uses OPSS).

    If your question is in the context of the ADF, the documentation, with that you should follow is OPSS and WLS authentication providers.

    Frank

  • "The logon user interface DLL failed to load athgina.dll. Contact your system administrator to replace the DLL or restore the original DLL. "was my initial problem.

    "The logon user interface DLL failed to load athgina.dll. Contact your system administrator to replace the DLL or restore the original DLL. "It's my original problem due to uninstallation of a Netgear usb internet device programthen a friend got their hands on it: now, put on it goes to safe mode selection screen. the result options of safe in many hyper scrolling mode that reads - multi (o) disc (o) partition (1) windowssystem32drivers\ ___sys... then stops & starts up etc when in last known good config that worked or start normally the icons of windows screen is displayed every thing seems as it should, then it turns a shade of blue just 1/2 a screen of white lettering & bam his judgment in a Flash. Cannot read this fast.      XP sp3 Toshiba Satellite P305

    Hi chygirl,

    You can follow the solution at the bottom of the link:-
    http://www.GeeksToGo.com/forum/topic/270656-cant-boot-up-after-unistall/
  • User profile service, you have been logged with the default for the system profile, please see the the event log for more information or contact your administrator.

    User profile service... Help... I'm stuck and going nowhere.

    Hello

    Whenever my user try to connect this MSG poping up to the top of any solution please.

    User profile service

    you have been logged on with the default for the system profile, please see the the event log for more information or contact your administrator.

    Click on this URL and follow the instructions 100% your problem has been resolved http: //support.microsoft.com/kb/947215

    Try it.

  • I need a very simple database system. I am the end user to allend users!

    Original title: database access

    I need a very simple database system. I am the end user to allend users!

    Access is rather dated, but could probably manage it if you own and that you already have a model for what you need.  Just open it and see if all the default options are what you are looking for, and it will put you in automatically:

    If this is not the case, just tell us what your needs are and I'm sure we can make a suggestion

  • Windows 10 will change my current setup of the operating system on files on the SSD HARD drive and program/user?

    Way back when I upgraded my main drive to a SSD, I used the following to put all the files of program/user on my HARD drive.  My questions are:

    1. What are replaced to the default settings?

    2. If so, what measures are needed to reach my current setup?

    d:\Users d:\ProgramData

    I would advise against using a script that in the beginning, because some people have had the tough get windows to read files that are not where they are supposed to be.

    For applications and other personal files, 10 Windows offers a similar feature in the settings.

    Program files (and the similar system attributes) should probably be intact until the symbolic links (which redirect Windows when he tries to find the file) running again. The application of this article did not work because Windows 7 was new, and equivalents of the command prompt (how I got to this topic) do not work.

    http://www.PCAdvisor.co.UK/how-to/Windows/how-install-software-second-hard-drive-move-program-files-folder-in-Windows-3500581/

    If you go for an upgrade, instead of a clean install, I would consider coming back from these changes to avoid damage or errors during the transition.

  • Role assignment of the system administrator to a new user in OIM 11 g 2

    I am trying to assign full access as xelsysadm to a newly created user, but not able to. Unable to identify the possibility to add the system administrator role. Admin system administrator role there is no SUPERIOR organization and we cannot create a new user at the TOP. any suggestions would be helpful.

    GoTo-> organization-> search and select high organization of the page-> open from the page detail->, Admin role-> select client (System Administrator)-click-> click the Assign button-> select user and add-> finally click OK.

  • Grant to the user API

    Hi team

    someone can tell me how we can grant API Oracle user, really appreciate help.

    Kind regards
    Mahesh

    Mahesh,

    Are you talking about [url http://docs.oracle.com/cd/E23943_01/portal.1111/e10238/pdg_cm_intro.htm#POBLD478] 9.3 providing access to APIs and Secure views?

    In this case, you can use provsyns.sql. Note that the instructions to get the portal password apply to the 10g only. If you want to get on 11g, use the instructions in the Note [url https://support.oracle.com/CSP/main/article?cmd=show&type=NOT&id=843978.1] 843978.1, "How to recover the portal schema Portal 11g password?".

    Thank you
    EJ

  • Why can I not use the variable system building blocks in a user variable?

    Using FrameMaker 11... I would like to make a short variable which includes simply all year-round - not months, no date (e.g., "2016").  It is for a page of bibliographic information in my documents, which would also quickly forget.  I want to just make sure that the year on this page is current (and auto update, if necessary, when I build the book).

    I just had to re - PDF and re - publish a document for this reason (and our release process is anything but 'speedy').

    You can change the definition of one of the... Date system variables so that the year of release. For example, to change the definition of The Date of change (Short) in <$year>.

  • Error: The application-specific permission settings grant Local Activation permission for the COM server application in the Windows XP computer.

    Original title: DCOM {E9F9ED00-7705-101B-9802-0000C07B665C}.

    I have this message DCOM in the registry: "the application-specific permission settings do not grant Local Activation permission for the COM with CLSID {E9F9ED00-7705-101B-9802-0000C07B665C} server application the user... xxxx...". (I deliberately placed the "xxxx" instead of my current PC for security reasons). This security permission can be modified using the Component Services administrative tool." I tried to look through the forum here, and I found elements that were close and others are not. so if anyone knows where I can go make the adjustments, it could save our society approximately $10K, because my new bosses are ready to install all new hardware and software, but if we could find a much simpler approach to this problem, this would make the new kid on the block like a champ look.
    We have a Window XP, the flat touch screen PC, running a few packages of software reviews that keep a record of our SCADA system trend.

    At random times around the clock, the PC will just restart and return to the logon screen. There is no other necessary users, so we have only the journal administrator form. As soon as we open the administrator it is specially configured to run a specific program of our choice, but if the PC keeps restarting whenever it feels like it, there is no history chart tend to save. It is essential, that we need.

    Hello

    Your Windows XP question is more complex than what is generally answered in the Microsoft Answers forums. It is better suited for the IT Pro TechNet public. Please post your question in the forum TechNet for assistance:

    http://social.technet.Microsoft.com/forums/en/itproxpsp/threads

    Hope the helps of information.

  • How can I determine what were the privileges granted to the PUBLIC?

    I don't know 'out of the box' privileges by default Oracle, but rather the privileges that have been granted since the day 0.

    SQL > select * from dba_sys_privs where dealer = "PUBLIC";

    no selected line

    SQL > grant create any table to the public;

    Grant succeeded.

    SQL > select * from dba_sys_privs where dealer = "PUBLIC";

    DEALER PRIVILEGE SMA

    ------------------------------ ---------------------------------------- ---

    PUBLIC CREATE ANY TABLE NO.

    SQL > revoke create any table of public;

    Revoke succeeded.

    SQL > select * from dba_sys_privs where dealer = "PUBLIC";

    no selected line

    SQL >

    The PUBLIC role is a special role that each database user account is automatically when the account is created. By default, it has no privileges granted to it, but there are many grants, especially for Java objects.


    The same binding, which was provided by a member.


    DBA_ROLE_PRIVS - roles granted to users and roles

    ROLE_ROLE_PRIVS - roles that were granted to roles

    ROLE_SYS_PRIVS - privileges granted to the roles system

    ROLE_TAB_PRIVS - Table privileges granted to roles

    Concerning

    Girish Sharma

Maybe you are looking for

  • Guard breaking and pop ups of the firefox programs index

    only to go to a site like mangatown or wad.ojooo.com , it would just crash for some reason, I don't know why... and strange pop ups is appeared a few days ago and when he started to plant too... pop ups were evidence of the programs Firefox... I coul

  • HP Envy Notebook dv6: unable to connect to the proxy server

    I saw an error message "Unable to connect to the proxy server" when I try to connect to the internet via WIFI, even if the label shows who is connected to my home router.

  • Connect USB hard drive to the SD2010KY DVD player

    Hi there Aussieland... * More about SD2010KY DVD player + * bought on a month back... Any kind dbo know the answer to: Could it be caused damage to run a USB connection external 3 1/2 "HD (160 g) - say a .avi movie - into the USB port on the front of

  • Icons grey

    Lately I have been see Greyed icons on my ipad.  Currently, one of them is kindle. The other is Messenger.

  • Ink HP 72 for T790