Required Permissions for Oracle DB Assessments


Product Name

CIS-CAT Pro Assessor v4

Product Version

v4.*

Date

Aug 30, 2023



Problem

Which user rights & permissions are required for an Oracle Database Benchmark assessment using CIS-CAT Pro Assessor v4? Do I have to use the SYS account or grant DBA privileges to a user?

Solution

The PDF version of each CIS Oracle DB Benchmark includes an Appendix in Section 7 (ā€œEstablishing an Audit/Scan Userā€) & 8 (ā€œEstablishing a Unified Audit Policyā€œ) that list the required prerequisites.

These two sections outline the process of creating a CISSCAN user and associated Roles, permissions, custom Views & Audit Policies for an assessment, as well as details for Multi-Tenant and Non-Multi-Tenant deployments.

The pages shown below may have been revised in newer Benchmark releases; please reference the latest available version on CIS WorkBench for the most current copy.

An example for the Oracle Database 19c Benchmark v1.1.0:

Ā 

Ā 

Ā 

Keywords; Oracle Database Assessor

Content by Label


Copyright Ā© 2023

Center for Internet SecurityĀ®


Ā