SV-24949r1_rule
V-3497
Oracle listener ADMIN_RESTRICTIONS parameter
DO6740-ORACLE11
CAT II
10
Edit the listener.ora file and add the following line for each listener in use on the system:
ADMIN_RESTRICTIONS_[listener-name] = ON
Restart the listener to activate the setting.
If a listener is not running on the local database host server, this check is Not a Finding.
Use the LSNRCTL utility and issue the STATUS [listener-name] command to locate the listener.ora file.
Open the listener.ora file in a text editor or viewer.
Locate the line with ADMIN_RESTRICTIONS_[listener-name] = ON where listener-name is the alias of the listener supplied by the DBA.
If no such line is found, this is a Finding.
Repeat for each listener listed in the LISTENER.ORA file.
V-3497
False
DO6740-ORACLE11
If a listener is not running on the local database host server, this check is Not a Finding.
Use the LSNRCTL utility and issue the STATUS [listener-name] command to locate the listener.ora file.
Open the listener.ora file in a text editor or viewer.
Locate the line with ADMIN_RESTRICTIONS_[listener-name] = ON where listener-name is the alias of the listener supplied by the DBA.
If no such line is found, this is a Finding.
Repeat for each listener listed in the LISTENER.ORA file.
M
Database Administrator
1368