O112-BP-021200 - Access to default accounts used to support replication must be restricted to authorized DBAs.


Replication database accounts are used for database connections between databases. Replication requires the configuration of these accounts using the same username and password on all databases participating in the replication. Replication connections use fixed user database links. This means that access to the replication account on one server provides access to the other servers participating in the replication. Granting unauthorized access to the replication account provides unauthorized and privileged access to all databases participating in the replication group.


Change the password for default and custom replication accounts and provide the password to IAO-authorized users only.

See Also


Item Details


References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-219695r879887_rule, STIG-ID|O112-BP-021200, STIG-Legacy|SV-68201, STIG-Legacy|V-53961, Vuln-ID|V-219695

Plugin: OracleDB

Control ID: 0e06958e15bf729ea02c84bc6a1c27666b32079199761948e3547574eee3d0f2