File Library

Access Denied: Real-World Use Cases for APEX and Real Application Security
Topic: Webinars
Owner: Brittany Butler
Date: 2023-03-30

Presented by: Jim Czuprynski, Zero Defect Computing

Limiting users’ access to data is still a thorny issue in many Oracle shops. How do we insure only the right people view – much less change! – only the data they’re allowed to? We’ll show you how we solved those issues for a large government agency with hundreds of external users via Real Application Security (RAS), whether they’re using APEX applications or direct-access tools like SQLcl.

Many Oracle shops still rely on cumbersome solutions like complex views, subsets of data housed within materialized views, or outmoded Virtual Private Database (VPD) security features to limit end-user access to the data they’re permitted to view or change. However, there’s a better way: Real Application Security (RAS).

Introduced in Oracle 12cR1, RAS insures that an end user can only see or change the data they’re allowed to, whether they connect to the database via Application Express (APEX) applications or directly via standard Oracle tools like SQL Developer, SQL*Plus, or SQLcl.

Through our real-world experience – a complex implementation for a large federal fisheries agency with hundreds of end users, each governed by tricky rules for their access rights – we’ll show you how to:
- Deploy RAS security policies to limit end-user access while viewing or modifying sensitive data
- Differentiate users connecting indirectly via APEX applications, or directly via SQLcl or SQL Developer
- Configure the RASADM APEX application to monitor and maintain RAS security features

Download File   Access Denied Real World Use Cases for APEX and Real Application Security.mp4

Become a member of ODTUG to gain access to more than 12,500 files in our technical database.

  • Not a member? Click through to the topic of interest to browse a list of available presentations.
  • Already a member? Log-in here to access the full database

Click here to see the Full Techincal Resource Database