About Database Firewall Policies
Database Firewall policies allow you to configure actions that Database Firewall should take on the SQL traffic it is receiving.
Oracle strongly recommends that you read Network-Based SQL Traffic Monitoring with Database Firewall to understand:
-
the Database Firewall network placement options
-
the different protection modes
-
the concepts of how a Database Firewall policy works
Database Firewall policies can be configured to report SQL operations on database, control client application access, enforce expected database access behavior, prevent SQL injection, and control application bypass, and prevent malicious SQL statements from reaching the database.
Database Firewall allows to create an allow list of SQL statements to pass, or deny list to block or alert.
Database Firewall policies is defined based on the users, the actions they can perform on the data, and the actions that the Database Firewall must initiate when the event occurs.