Add Oracle Listener Security
By default Listener Configured Without password and unauthorized Users can change the setting of listerner with netca,netmgr command and they can start and shut listener. So you should apply security to your listener.
Step 1:To secure your Listener With Password put this command as your oracle user:
#lsnrctl
LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 24-AUG-2010 15:09:32
Copyright (c) 1991, 2005, Oracle. All rights reserved.
Welcome to LSNRCTL, type "help" for information.
LSNRCTL>change_password
Old password:LSNRCTL> set cur LISTENER_NAME
New password:
Reenter new password:
Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)
(HOST=training.hemanth.com)(PO RT=1523)))
Password changed for CHAI10
The command completed successfully
LSNRCTL> save_config
Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)
(HOST=training.hemanth.com)(PORT=1523)))
Saved CHAI10 configuration parameters.
Listener Parameter File
/oracle/oracle/product/10.2.0/db_1//network/admin/listener.ora
Old Parameter File
/oracle/oracle/product/10.2.0/db_1//network/admin/listener.bak
The command completed successfully
LSNRCTL>exit
If you are not using the default Listener name do like this
and getting this below error follow this:
LSNRCTL> change_password
Old password:
New password:
Reenter new password:
Connecting to (ADDRESS=(PROTOCOL=tcp)(HOST=)(PORT=1521))
TNS-12541: TNS:no listener
TNS-12560: TNS:protocol adapter error
TNS-00511: No listener
inux Error: 111: Connection refused
First you must use this command
LSNRCTL>change_password
Old password:
New password:
Reenter new password:
Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)
(HOST=training.hemanth.com)(PO RT=1523)))
Password changed for CHAI10
The command completed successfully
LSNRCTL> save_config
Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)
(HOST=training.hemanth.com)(PORT=1523)))
Saved CHAI10 configuration parameters.
Listener Parameter File
/oracle/oracle/product/10.2.0/db_1//network/admin/listener.ora
Old Parameter File
/oracle/oracle/product/10.2.0/db_1//network/admin/listener.bak
The command completed successfully
LSNRCTL>exit
No comments:
Post a Comment