Oracel增加IP白名单限制

F:\Java\Oracle\product\11.2.0\dbhome_1\NETWORK\ADMIN\sqlnet.ora

修改sqlnet.ora文件增加两行

bash 复制代码
# like12 add,20231025,IP白名单限制
TCP.VALIDNODE_CHECKING=yes
TCP.INVITED_NODES=(WIN-I4HJRGH080V,127.0.0.1,xxx.xxx.xxx.xxx)

注意:需要将计算机名hostname添加进去 否则本机PL/SQL工具连接不了

完整示例为:

bash 复制代码
# sqlnet.ora Network Configuration File: F:\Java\Oracle\product\11.2.0\dbhome_1\network\admin\sqlnet.ora
# Generated by Oracle configuration tools.

# This file is actually generated by netca. But if customers choose to 
# install "Software Only", this file wont exist and without the native 
# authentication, they will not be able to connect to the database on NT.

SQLNET.AUTHENTICATION_SERVICES= (NTS)

NAMES.DIRECTORY_PATH= (TNSNAMES, EZCONNECT)

# like12 add,20231025,IP白名单限制
TCP.VALIDNODE_CHECKING=yes
TCP.INVITED_NODES=(WIN-I4HJRGH080V,127.0.0.1,58.42.241.105)

可能不需要的操作:

修改listener.ora文件 增加一段

bash 复制代码
    # like12 add,20231025,IP白名单限制
    (SID_DESC =
      (GLOBAL_NAME = orcl)
      (ORACLE_HOME = F:\Java\Oracle\product\11.2.0\dbhome_1)
      (SID_NAME = orcl)
    )

完整示例为:

bash 复制代码
# listener.ora Network Configuration File: F:\Java\Oracle\product\11.2.0\dbhome_1\network\admin\listener.ora
# Generated by Oracle configuration tools.

SID_LIST_LISTENER =
  (SID_LIST =
    (SID_DESC =
      (SID_NAME = CLRExtProc)
      (ORACLE_HOME = F:\Java\Oracle\product\11.2.0\dbhome_1)
      (PROGRAM = extproc)
      (ENVS = "EXTPROC_DLLS=ONLY:F:\Java\Oracle\product\11.2.0\dbhome_1\bin\oraclr11.dll")
    )
    # like12 add,20231025,IP白名单限制
    (SID_DESC =
      (GLOBAL_NAME = orcl)
      (ORACLE_HOME = F:\Java\Oracle\product\11.2.0\dbhome_1)
      (SID_NAME = orcl)
    )
  )

LISTENER =
  (DESCRIPTION_LIST =
    (DESCRIPTION =
      (ADDRESS = (PROTOCOL = IPC)(KEY = EXTPROC1521))
      (ADDRESS = (PROTOCOL = TCP)(HOST = WIN-I4HJRGH080V)(PORT = 1521))
    )
  )

ADR_BASE_LISTENER = F:\Java\Oracle
相关推荐
吴free35 分钟前
mac电脑wireshark快速实现http接口抓包
网络·测试工具·http·wireshark
艾希逐月1 小时前
TCP数据的发送和接收
服务器·网络·tcp/ip
THMOM914 小时前
TinyWebserver学习(9)-HTTP
网络协议·学习·http
D-海漠4 小时前
Modbus_TCP_V4 客户端
网络
虚!!!看代码5 小时前
【Sentinel学习】
网络·sentinel
liulilittle5 小时前
VGW 虚拟网关用户手册 (PPP PRIVATE NETWORK 基础设施)
开发语言·网络·c++·网关·智能路由器·路由器·通信
网硕互联的小客服5 小时前
服务器如何配置防火墙规则以阻止恶意流量和DDoS攻击?
服务器·网络·ddos
Qiq9225 小时前
怎么分析内网ipv6和ipv4流量占比?
网络
数通Dinner5 小时前
P/A初始化协商
网络
网安小白的进阶之路5 小时前
A模块 系统与网络安全 第三门课 网络通信原理-3
网络·windows·安全·web安全·系统安全