About Password Expiration in Oracle Database 11g
2014-06-27 10:44
465 查看
In the Apex Installation Guide you will find the following paragraph:
"In the default profile in Oracle Database 11g, the parameter PASSWORD_LIFE_TIME is set to 180. If you are using Oracle Database 11g with Oracle Application Express, this causes the password for APEX_PUBLIC_USER to expire in 180 days. As a result, your Oracle
Application Express instance will become unusable until you change the password.
To prevent this behavior, create another profile in which the PASSWORD_LIFE_TIME parameter is set to unlimited and alter the APEX_PUBLIC_USER account and assign it to the new profile."
Of course with a little help from google you can find out how to do this. I summarized it for you:
First let's see what the limits of the default profile (or the profile of your APEX_PUBLIC_USER) are:
select resource_name
,limit
from dba_profiles
where profile = 'DEFAULT';
It will result in something like this:
RESOURCE_NAME LIMIT
-------------------------------- -------------------------------------
COMPOSITE_LIMIT UNLIMITED
SESSIONS_PER_USER UNLIMITED
CPU_PER_SESSION UNLIMITED
CPU_PER_CALL UNLIMITED
LOGICAL_READS_PER_SESSION UNLIMITED
LOGICAL_READS_PER_CALL UNLIMITED
IDLE_TIME UNLIMITED
CONNECT_TIME UNLIMITED
PRIVATE_SGA UNLIMITED
FAILED_LOGIN_ATTEMPTS 10
PASSWORD_LIFE_TIME 180
PASSWORD_REUSE_TIME UNLIMITED
PASSWORD_REUSE_MAX UNLIMITED
PASSWORD_VERIFY_FUNCTION NULL
PASSWORD_LOCK_TIME 1
PASSWORD_GRACE_TIME 7
There are two options. First you can change the default profile, but the profile of the other users will change accordingly and that may be a security vulnerability. But this is how you do it:
alter profile default limit
password_life_time unlimited;
Second, and my favorite, add a new profile and link it to the APEX_PUBLIC_USER user:
create profile apex_public limit
password_life_time unlimited;
alter user apex_public_user
profile apex_public;
The first query will create a new profile with all limits to default except the password_life_time. The second one changes the profile of the APEX_PUBLIC_USER.
And... don't forget to change the profile for your APEX_LISTENER and APEX_REST_PUBLIC_USER.
"In the default profile in Oracle Database 11g, the parameter PASSWORD_LIFE_TIME is set to 180. If you are using Oracle Database 11g with Oracle Application Express, this causes the password for APEX_PUBLIC_USER to expire in 180 days. As a result, your Oracle
Application Express instance will become unusable until you change the password.
To prevent this behavior, create another profile in which the PASSWORD_LIFE_TIME parameter is set to unlimited and alter the APEX_PUBLIC_USER account and assign it to the new profile."
Of course with a little help from google you can find out how to do this. I summarized it for you:
First let's see what the limits of the default profile (or the profile of your APEX_PUBLIC_USER) are:
select resource_name
,limit
from dba_profiles
where profile = 'DEFAULT';
It will result in something like this:
RESOURCE_NAME LIMIT
-------------------------------- -------------------------------------
COMPOSITE_LIMIT UNLIMITED
SESSIONS_PER_USER UNLIMITED
CPU_PER_SESSION UNLIMITED
CPU_PER_CALL UNLIMITED
LOGICAL_READS_PER_SESSION UNLIMITED
LOGICAL_READS_PER_CALL UNLIMITED
IDLE_TIME UNLIMITED
CONNECT_TIME UNLIMITED
PRIVATE_SGA UNLIMITED
FAILED_LOGIN_ATTEMPTS 10
PASSWORD_LIFE_TIME 180
PASSWORD_REUSE_TIME UNLIMITED
PASSWORD_REUSE_MAX UNLIMITED
PASSWORD_VERIFY_FUNCTION NULL
PASSWORD_LOCK_TIME 1
PASSWORD_GRACE_TIME 7
There are two options. First you can change the default profile, but the profile of the other users will change accordingly and that may be a security vulnerability. But this is how you do it:
alter profile default limit
password_life_time unlimited;
Second, and my favorite, add a new profile and link it to the APEX_PUBLIC_USER user:
create profile apex_public limit
password_life_time unlimited;
alter user apex_public_user
profile apex_public;
The first query will create a new profile with all limits to default except the password_life_time. The second one changes the profile of the APEX_PUBLIC_USER.
And... don't forget to change the profile for your APEX_LISTENER and APEX_REST_PUBLIC_USER.
相关文章推荐
- All about rowid in Oracle Database 11g
- Partitioning Enhancements in Oracle Database 11g Release 1
- Describe in brief about oracle database tuning.
- Virtual Columns in Oracle Database 11g
- Data Guard Physical Standby Setup in Oracle Database 11g Release 2
- Virtual Columns in Oracle Database 11g
- Adaptive Cursor Sharing in Oracle Database 11g Release 1
- 用户、补丁-Create Oracle ASM Cluster File Systems (ACFS) in Oracle Database 11g Release 2-by小雨
- [置顶] How to create Oracle 11g R2 database manually in ASM?
- All about control file in Oracle Database
- 转载:Data Guard Physical Standby Setup in Oracle Database 11g Release 2
- Oracle:Virtual Columns in Oracle Database 11g Release 1
- Adaptive Cursor Sharing in Oracle Database 11g
- Adaptive Cursor Sharing in Oracle Database 11g Release 1
- Read-Only Tables in Oracle Database 11g
- How to switch to another database in oracle 11g(如何在oracle中从一个数据库切换到另一个数据库)
- Table Compression Enhancements in Oracle Database 11g Release 1
- (转)Fine-Grained Access to Network Services in Oracle Database 11g Release 1
- Using Transparent Database Encryption in Oracle Database 11g
- The best 11 things about Oracle database 11g R2