Re: dumb++ security

From: Murray Watson (JunkDTectr@carolina.rr.com)
Date: 02/21/02


From: JunkDTectr@carolina.rr.com (Murray Watson)
Date: Thu, 21 Feb 2002 08:09:59 GMT

On 20 Feb 2002 13:50:51 -0800, In comp.security.unix,
buffcoder@hotmail.com says...
> Hello.
>
> I need some suggestions on how to make my company's product
> more secure from hackers. Currently our software
> consists of several batch programs that are usually run
> from the commandline.
>
> These programs read username/password from a text file in a
> user's home directory. This information is used into Oracle
> or Sybase database. If the user doesn't have permission
> to connect to either database, the program doesn't run.

Oracle has calls to accept the authentication performed by the OS,
whatever they logged in as becomes their Oracle user ID. No need to
pass anything.

Note the follow-up. While it's security, probably running on Unix,
really sounds like you're wanting database info.

-- 
Does the act of spamming drive companies out of business? or 
Do companies going out of business spam?  There is a correlation.  
By spamming you are announcing to the world that you are 
going out of business.



Relevant Pages

  • Re: "Business Logic / Rules should never be in the database or stored procedures"
    ... the business logic resides. ... are enforced in the database (uniqueness, NOT NULL, referential integrity, ... With Oracle we ... the problem was essentially due to the web developers not wanting ...
    (comp.databases.oracle.misc)
  • Re: why>?
    ... 'They' being Oracle. ... Or try charting Oracle and Microsoft share ... Microsoft had 2 competing enterprise level database systems ... little about the law as you do about business other than DBA/DBMS ...
    (microsoft.public.excel)
  • Re: "Business Logic / Rules should never be in the database or stored procedures"
    ... the business logic resides. ... are enforced in the database (uniqueness, NOT NULL, referential integrity, ... With Oracle we ... Nearly all our problems have been due to the web interface. ...
    (comp.databases.oracle.misc)
  • Re: dumb++ security
    ... > to connect to either database, ... Oracle has calls to accept the authentication performed by the OS, ... Does the act of spamming drive companies out of business? ...
    (comp.security.misc)
  • Re: What so special about PostgreSQL and other RDBMS?
    ... That's exactly the link the licence agreement for the database points to when it ... comes to what wecan expect for paying support. ... > "Oracle may provide additional releases or versions of its programs ... If the requirements are volatile I'd do a long term contract detailing what ...
    (comp.lang.php)