select * from dab_profiles where PROFILE='DEFAULT'; 查看相关参数是否符合要求。
select * from dba_users; 查看账户列表
select * from sys.user$; 查看管理用户password字段和spare4是否加密
select * from user_sys_privs; 查询当前用户被授予的系统权限
select * from user_tab_privs; 查询当前用户被授予的对象权限
SELECT policy_name,status from DBA_SA_POLICIES; 查看主体客体是否创建策略
select value from v$parameter where name='audit_trail';
show parameter audit; 查看是否开启审计 audit_trail VALUE值是否不为 none。
show parameter audit;查看审计存储路径
select banner from sys.v_$version; 查看数据库版本
select limit from dba_profiles where profile='DEFAULT' and resource_name='PASSWORD_LIFE_TIME'; 查看口令有效期
select limit from dba_profiles where profile='DEFAULT' and resource_name='PASSWORD_REUSE_TIME'; 口令失效后锁定时间及失效后保留次数
select limit from dba_profiles where profile='DEFAULT' and resource_name='PASSWORD_GRACE_TIME'; 查询口令失效后保留时间
select limit from dba_profiles where profile='DEFAULT' and resource_name='PASSWORD_VERIFY_FUNCTION'; 查询口令复杂度
select username, account_status, profile from dba_users where account_status NOT like '%LOCKED'; 查看未锁定所有账户
select limit from dba_profiles where profile='DEFAULT' and resource_name='FAILED_LOGIN_ATTEMPTS'; 查看登录失败锁定次数
select limit from dba_profiles where profile='DEFAULT' and resource_name='PASSWORD_LOCK_TIME'; 查看登录失败锁定时间
select LIMIT FROM DBA_PROFILES WHERE PROFILE='DEFAULT' AND RESOURCE_NAME='IDLE_TIME'; 查看超时时间
select username,account_status from dba_users;查看管理用户
select username,account_status from dba_users where account_status='OPEN'; 查看使用的账户
sqlplus / as sysdba 本地直接登录