Oracle数据库 19c OCP 082考题解析第10题

考试科目:1Z0-082

考试题量:90
通过分数:60%
考试时间:150min
本文为云贝教育郭一军guoyJoe原创,请尊重知识产权,转发请注明出处,不接受任何抄袭、演绎和未经注明出处的转载。【云贝教育】Oracle 19c OCP 082题库解析(10) - 课程体系 - 云贝教育本文为云贝教育郭一军guoyJoe原创,请尊重知识产权,转发请注明出处,不接受任何抄袭、演绎和未经注明出处的转载。

10. You want to apply the principle of Least Privilege in all your live databases.
One of your requirements is to revoke unnecessary privileges from all users who have them using Privilege Analysis.
Which two are types of analyses that can be done using the DBMS PRIVILEGE CAPTURE package?
A.analysis of privileges that a user has on other schema's objects
B.analysis of privileges that a user has on their own schema objects
C.analysis of privileges granted indirectly to a role that are then used by a user who has been granted that role
D.analysis of privileges granted directly to a role that are then used by a user who has been granted that role
E.analysis of all privileges used by the sys user


参考答案:AC

解析:

DBMS PRIVILEGE CAPTURE不能分析SYS,也不能分析自己schema的,BDE排除,所以选AC,具体测试详情见下面的脚本

权限分析脚本

role :teacher

owner:teacher1

table:teacher_name

role :student

owner:student1

table:student_name

--1.创建用户

create user student1

identified by "apps"

default tablespace apps_data_tablespace

temporary tablespace apps_tmp_tablespace;

create user teacher1

identified by "apps"

default tablespace apps_data_tablespace

temporary tablespace apps_tmp_tablespace;

--2.授权

--3.创建表

create table student1.student_table_test(id number);

create table teacher1.teacher_table_test(id number);

--4.创建角色并授权

create role student_role;

grant create session to student_role;

--create session 等价于role connect

create role teacher_role;

grant student_role to teacher_role;

grant student_role to student1;

grant teacher_role to teacher1;

--5分析关系

teacher访问student表对应AC

teacher访问teacher表对应BD

--6创建分析策略

BEGIN

DBMS_PRIVILEGE_CAPTURE.CREATE_CAPTURE(

name => 'analysis_role_teacher',

description => '分析teacher角色',

type => DBMS_PRIVILEGE_CAPTURE.G_ROLE,

roles => role_name_list('TEACHER_ROLE')

);

END;

/

--7.开始权限分析

BEGIN

dbms_privilege_capture.enable_capture(NAME =>'analysis_role_teacher');

END;

/

--8关闭权限分析

BEGIN

dbms_privilege_capture.DISABLE_CAPTURE(NAME =>'analysis_role_teacher');

END;

/

--9分析填充视图

BEGIN

dbms_privilege_capture.GENERATE_RESULT(NAME =>'analysis_role_teacher');

END;

/

select * from dba_Role_privs where granted_role='TEACHER_ROLE';

select * from DBA_TAB_PRIVS WHERE GRANTEE ='TEACHER_ROLE';

select * from dba_sys_provs where GRANTEE ='TEACHER_ROLE';

select user_name from DBA_UNUSED_SYSPRIVS ;

select * from DBA_USED_SYSPRIVS ;

--10删除策略函数

BEGIN

dbms_privilege_capture.DROP_CAPTURE (NAME =>'analysis_role_teacher');

END;

/

Oracle 19c OCP 考试为理论考试,需通过两门考试才能拿到"Oracle 19c OCP 证书"。

O racle 19c OCP 1z0-082考试详情

O racle 19c OCP 1z0-083考试详情

Oracle 19c OCP证书如下线下考试在提交培训记录后,需要一周的时间才可以获取到证书,线上考试在通过考试的一小时后可以获取证书。

相关推荐
赵渝强老师23 分钟前
【赵渝强老师】PostgreSQL中表的碎片
数据库·postgresql
全栈老石4 小时前
拆解低代码引擎核心:元数据驱动的"万能表"架构
数据库·低代码
倔强的石头_1 天前
kingbase备份与恢复实战(二)—— sys_dump库级逻辑备份与恢复(Windows详细步骤)
数据库
jiayou642 天前
KingbaseES 实战:深度解析数据库对象访问权限管理
数据库
李广坤3 天前
MySQL 大表字段变更实践(改名 + 改类型 + 改长度)
数据库
爱可生开源社区4 天前
2026 年,优秀的 DBA 需要具备哪些素质?
数据库·人工智能·dba
随逸1774 天前
《从零搭建NestJS项目》
数据库·typescript
加号35 天前
windows系统下mysql多源数据库同步部署
数据库·windows·mysql
シ風箏5 天前
MySQL【部署 04】Docker部署 MySQL8.0.32 版本(网盘镜像及启动命令分享)
数据库·mysql·docker
李慕婉学姐5 天前
Springboot智慧社区系统设计与开发6n99s526(程序+源码+数据库+调试部署+开发环境)带论文文档1万字以上,文末可获取,系统界面在最后面。
数据库·spring boot·后端