1.45 O19C-00-011200

Information

Network access to Oracle Database must be restricted to authorized personnel.

GROUP ID: V-270539
RULE ID: SV-270539r1064895

Restricting remote access to specific, trusted systems helps prevent access by unauthorized and potentially malicious users.

Solution

Configure the database listener to restrict access by IP address or set up an external device to restrict network access to the DBMS.

More information can be found at https://docs.oracle.com/en/database/oracle/oracle-database/19/netrf/parameters-for-the-sqlnet.ora.html#GUID-5C3AB641-7541-4CE9-BC9E-BA5DD30616A8.

See Also

https://workbench.cisecurity.org/benchmarks/26166