Security Management Flashcards
7 cards from real 1Z0-006 practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Security Management flashcards as text
Which Oracle feature encrypts entire tablespaces transparently without requiring application changes?
Answer: Oracle Advanced Security TDE (Transparent Data Encryption)
Transparent Data Encryption (TDE) encrypts data at rest at the tablespace or column level without requiring any modifications to existing applications.
A DBA wants to prevent the SYS user from accessing sensitive payroll data in a specific schema. Which Oracle feature can enforce this restriction?
Answer: Oracle Database Vault
Oracle Database Vault creates realms that restrict even highly privileged users like SYS from accessing protected application data.
What is the minimum number of characters Oracle enforces for passwords when using the default password complexity function?
Answer: 8
Oracle's default password verification function (ora12c_strong_password_verify_function) requires a minimum of 8 characters.
Which audit trail type stores Oracle audit records in database tables within the AUDSYS schema?
Answer: Unified Auditing Trail
Unified Auditing, introduced in Oracle 12c, writes all audit records to the UNIFIED_AUDIT_TRAIL view stored in the AUDSYS schema.
Which type of Oracle role is automatically enabled when a user logs in, without needing SET ROLE?
Answer: Default role
Default roles are automatically activated at login, while non-default roles must be explicitly enabled during the session with SET ROLE.
What does the CONNECT role provide in modern Oracle Database versions?
Answer: Only the CREATE SESSION privilege
In Oracle 10g and later, the CONNECT role was reduced to only the CREATE SESSION privilege, removing the many object privileges it previously held.
An application schema owner should not log in directly. Which account status best enforces this policy?
Answer: EXPIRED & LOCKED
Setting an account to EXPIRED & LOCKED prevents direct logins while still allowing the schema to exist and be accessed by other authorized application accounts.