Basic Security Considerations

The following principles are fundamental to using any application securely:

  • Keep software up to date. This includes the latest product release and any patches that apply to it.

  • Limit privileges as much as possible. Users should be given only the access necessary to perform their work. User privileges should be reviewed periodically to determine relevance to current work requirements.

  • Monitor system activity. Establish who should access which system components, and how often, and monitor those components.

  • Install software securely. For example, use firewalls, secure protocols using TLS (SSL), and secure passwords. See " Performing a Secure Session Monitor Installation ".

  • Learn about and use the Session Monitor security features. See " Implementing Session Monitor Security ".

  • Use secure development practices. For example, take advantage of existing database security functionality instead of creating your own application security. See " Security Considerations for Developers ".

  • Keep up to date on security information. Oracle regularly issues security-related patch updates and security alerts. You must install all security patches as soon as possible. See the "Critical Patch Updates and Security Alerts" Web site:

    http://www.oracle.com/technetwork/topics/security/alerts-086861.html