5 Restricting access to sensitive files

Oracle recommends that you limit the access to the files and directory containing sensitive information. In Linux environment, default the files and directories to 750 or 640 permissions, as applicable.

The following are the sensitive files:

  • <WebLogic_Home>/user_projects/domains/<domain_name>/config/config.xml
  • <WebLogic_Home>/user_projects/domains/<domain_name>/config/*
  • <WebLogic_Home>/user_projects/domains/<domain_name>/servers/AdminServer/logs
  • <WebLogic_Home>/user_projects/domains/<domain_name>/servers/<ManagedServerName>/logs
  • <WebLogic_Home>/user_projects/domains/<domain_name>/<OHMPI_OracleWallet_Files>
  • IBML and Profiler directories
  • Real-time Loader installation directories
  • Directories where MPI and RM database scripts are copied, updated, and executed
  • Relationship Management MPI Agent Wallet files
  • IHE HL7v2 folder