Required Permissions for Oracle DB Assessments


Product Name

CIS-CAT Pro Assessor v4

Product Version

v4.*

Date

Aug 30, 2023



Problem

Which user rights & permissions are required for an Oracle Database Benchmark assessment using CIS-CAT Pro Assessor v4? Do I have to use the SYS account or grant DBA privileges to a user?

Solution

The PDF version of each CIS Oracle DB Benchmark includes an Appendix in Section 7 (“Establishing an Audit/Scan User”) & 8 (“Establishing a Unified Audit Policy“) that list the required prerequisites.

These two sections outline the process of creating a CISSCAN user and associated Roles, permissions, custom Views & Audit Policies for an assessment, as well as details for Multi-Tenant and Non-Multi-Tenant deployments.

The pages shown below may have been revised in newer Benchmark releases; please reference the latest available version on CIS WorkBench for the most current copy.

An example for the Oracle Database 19c Benchmark v1.1.0:

 

 

 

Keywords; Oracle Database Assessor

Content by Label


Copyright © 2023

Center for Internet Security®