Effective Oracle Database 10g Security by Design

Have a Promotion Code?

Please enter it here:

Great deals and more!

Sign up for special offers, exclusive discounts, and new product announcements from McGraw-Hill Professional.

SIGN UP TODAY


preview

Date

June 17, 2004

Format

Paperback, 544 pages

Other Formats


ISBN

0072231300 / 9780072231304

$

Your Price

62.99



Overview


Main description

Oracle security expert David Knox explains how to design and develop an integrated, secure Oracle environment. “In my experience in the security world, including 32 years at the Central Intelligence Agency, I’ve not found anyone with more experience in the theory and practice of protecting your data than David Knox.” --Dave Carey, former Executive Director of the CIA


Table of contents

PART I Quick Start 1 General Security Best Practices 2 Securing the Database PART II Identification and Authentication 3 Understanding Identification and Authentication 4 Connection Pools and Proxy Authentication 5 Identity Management and Enterprise Users 6 Identification and Authentication for Web Applications PART III Authorizations and Auditing 7 Privileges and Roles 8 Effective Auditing for Accountability PART IV Fine-Grained Access Control 9 Application Contexts for Security and Performance 10 Implementing Fine-Grained Access Controls with Views 11 Row-Level Security with Virtual Private Database 12 Oracle Label Security 13 Database Encryption PART V Appendixes A Setting Up the Security Manager B DATA_CRYPTO Package C DBMS_CRYPTO Performance Test Results


Back cover copy

Protect Your Mission-Critical Data with Tips and Tricks from an Oracle Security Insider

Oracle expert David Knox has written the most practical, up-to-date book on Oracle Database 10g security available. With an emphasis on real-world problems and detailed solutions, Effective Oracle Database 10g Security by Design provides all the information you need to develop and deploy secure database applications. The entire security cycle is covered--from identification and authentication to fine-grained access control and encryption to effective auditing techniques. The material is presented with comprehensive yet easy-to-understand examples that show how to use all the security technologies in a complementary way.

  • Assess database vulnerabilities and develop effective security policies
  • Preserve user identity with in-depth analyses of JDBC connection pools, proxy authentication, and client identifiers
  • Manage database users from a central directory without sacrificing security
  • Lock down database access using secure application roles
  • Leverage application and database security within Oracle’s Identity Management infrastructure
  • Validate user privileges by using simple views and scripts
  • Protect individual data elements by using the new Oracle DBMS_CRYPTO package
  • Exploit database views to provide row-level and column-level fine-grained access controls
  • Enforce need-to-know access and data privacy with Virtual Private Database and Oracle Label Security
  • Ensure user accountability with Oracle fine-grained Auditing

David Knox is the chief engineer for Oracle’s Information Assurance Center and is one of the premier educators worldwide on Oracle security. While at Oracle he has worked on wide-ranging security programs for various customers including the U.S. Department of Defense, intelligence agencies, financial services companies, and healthcare organizations.





Copyright 2013 McGraw-Hill Global Education Holdings, LLC

WELCOME!

Before you can enjoy free downloads from McGraw-Hill Professional, we ask that you please provide your email address and country.

Happy shopping! And thank you for visiting McGraw-Hill Professional.