System Security

Ruby

Member
Good afternoon,
We have been having some discussions around the use of the apps user name and password as well as change control . Our auditors are not very comfortable with our current set-up where all parties involved (about 11 of us) all use the same user name and password (username apps), making it very difficult to track changes and pinpoint performance issues.

Are there any standards out there that we could adopt for our site? We would, ideally, like a situation where changes are recorded according to user name / date of change.

Has anyone else experienced the same problem - are there any other suggestions for change control? Any constructive suggestions would be more than welcome.

Thanks and regards,
Ruby
 
First of all I would suggest that you do not use a common Oracle user, but that each connects with a individually named user. Doing so would allow you to use Oracle
 
Back
Top