Data Loss Prevention

 View Only

DLP Database account security

  • 1.  DLP Database account security

    Posted Oct 06, 2011 11:48 AM

    Hi all,

    Hope someone will be able to share knowledge in this space.

    Can I find out if there are have been any concerns raised on the security of the DLP DB account?

    1) How can the DB account be protected from misuse - to login interactively to the backend database

    2) What information can be revealed from the interactive login? My assumption is any decipherable content (apart from log data) is only viewable from the console interface

    3) Can the OS DBA view any incident data on the DB? Again, my assumption is decipherable content is only vieweable from the console as encryption is in place

    4) Is there any good documentation on this?

    Thanks

    K