Re: Encrypted protocol

From: Al B. <albert.y.balbekov_at_gmail.com>
Date: Sat, 10 Dec 2022 16:37:57 -0800
Message-ID: <CACKN2vEKnz23HkmwqOqG8=h6yTUHAFLDkUKfFtkJPVRbqJTO2Q_at_mail.gmail.com>



Hello EPA,

Marvel auburn

On Sat, Dec 10, 2022 at 9:36 AM EPA <epanosian_at_gmail.com> wrote:

> Hello,
> thank you. I was aware of the SQLNET.ora file, but in my case, there are
> other databases using the same Oracle home. If I set ENCRYPTION_SERVER=
> REQUIRED, it will impact other clients and if I set up ENCRYPTION_SERVER=
> ACCEPTED or REQUESTED, then the target application (client) may/not use
> encryption.
> Any comments?
>
> EPA
>
> On Fri, Dec 9, 2022 at 9:05 AM Marián Bednár <marian.bednar_at_gmail.com>
> wrote:
>
>> Hi,
>>
>> Here is the basic description of two encrypting concepts.
>> Native encryption is easy to configure (transparent for clients) but for
>> some security officers it hasn't to be perfect.
>>
>> https://questoraclecommunity.org/learn/blogs/oracle-database-network-encryption-native-vs-tls-ssl/
>>
>> Oracle docs:
>>
>> https://docs.oracle.com/en/database/oracle/oracle-database/19/dbseg/configuring-network-data-encryption-and-integrity.html
>>
>> https://docs.oracle.com/en/database/oracle/oracle-database/19/dbseg/configuring-secure-sockets-layer-authentication.html
>>
>> Marian
>>
>>
>>
>> pi 9. 12. 2022 o 14:45 EPA <epanosian_at_gmail.com> napísal(a):
>>
>>> Hello,
>>>
>>> What are the requirements to set up encrypted protocols between
>>> applications / Oracle (19c) databases. How to enforce the use of encrypted
>>> protocols (i.e. SSL) to prevent eavesdropping or unauthorized modification
>>> of data in-transit. Disable clear-text services where possible? Sqlnet.ora?
>>> Anybody has done this? What are the cons/pros? What are the steps? What are
>>> shoulds and shouldn'ts?
>>>
>>> Thank you,
>>>
>>> EPA
>>>
>>

--
http://www.freelists.org/webpage/oracle-l
Received on Sun Dec 11 2022 - 01:37:57 CET

Original text of this message