加强数据库安全:多云和多因素身份验证 [THR3324].pdf

编号:970824 PDF 28页 1.44MB 下载积分:VIP专享
下载报告请您先登录!

加强数据库安全:多云和多因素身份验证 [THR3324].pdf

1、THR3324Multifactor AuthenticationStrengthening database securityRuss LowenthalVice PresidentOracle AI Database SecurityDatabase breaches almost always involve one of TWO attack methods1.Ransomware file scraping2.Compromised login credentials2Copyright 2025,Oracle and/or its affiliatesThe two most va

2、luable things you can do to secure your databases are:1.Encrypt2.Strengthen Authentication3Copyright 2025,Oracle and/or its affiliatesHow are database users authenticated?4Copyright 2025,Oracle and/or its affiliatesOperating SystemUsername/PasswordKerberosPKI CertificateRADIUSOCI IAM(passwords or to

3、kens)Microsoft Entra ID tokensLocal user multi-factor authenticationLegacy Authentication5Copyright 2025,Oracle and/or its affiliatesOS AuthenticationUsername and passwordUserALL Oracle DatabasesUsername,password verifierUserALL Oracle DatabasesUsernameStrong Authentication6Copyright 2025,Oracle and

4、/or its affiliatesKerberosPKI CertificateUserActive Directory/MITKey Distribution Center12ALL Oracle DatabasesUserSmartcard with user certificateUser certificatepublic keyALL Oracle DatabasesKerberos TicketCloud Identity7Copyright 2025,Oracle and/or its affiliatesOCI IAMMicrosoft Entra IDOCI DBaaSOC

5、I DBaaSIAM PrincipalSend token(or password)AuthenticateOCI IAMEntra ID PrincipalSend tokenAuthenticateEntra IDALL Oracle DatabasesGet tokenGet tokenMultifactor Authentication(MFA)You demand MFA for almost any important serviceShould you expect less from your database?Why multifactor?Go where the ris

6、k is.Passwords biteFallible humans,phishing,brute force,credential stuffing,post-it notes,SharePoint docs with passwords in clear text,“hidden”properties files passwords are not especially secure.but they are ubiquitousPasswords are the lowest common denominator in authentication.Almost everything s

友情提示

1、下载报告失败解决办法
2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
4、本站报告下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。

本文(加强数据库安全:多云和多因素身份验证 [THR3324].pdf)为本站 (Flechazo) 主动上传,三个皮匠报告文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知三个皮匠报告文库(点击联系客服),我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。
客服
商务合作
小程序
服务号
折叠