<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>idea [Replicate] Add Kerberos and/or SSL certificate connection to Oracle endpoints in Suggest an Idea</title>
    <link>https://community.qlik.com/t5/Suggest-an-Idea/Replicate-Add-Kerberos-and-or-SSL-certificate-connection-to/idi-p/1976836</link>
    <description>&lt;DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;Hello everyone,&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;Hope you're all fine.&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;In order to enhance our security display on client's side, we would like Replicate to fit with a specific way of connection, especially on Oracle endpoints.&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;As described in the title, the idea would be to be able to connect to an Oracle endpoint (Source/Target) with only SSL certificate or Kerberos way of working. This means that the account we will be using would not be passworded, and so used as credentials.&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;STRONG&gt;Functionality:&lt;/STRONG&gt; Currently, we are able to connect with "classic" credentials. We would like to disable the password of these credentials, and connect with a certificate, or Kerberos.&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;STRONG&gt;Motivation:&lt;/STRONG&gt; Having this feature added would help us control the usage of these accounts, and improve the security in our environment. &lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;STRONG&gt;Importance:&lt;/STRONG&gt; To go deeper, the change has already been submitted to our business, and we will have to fit with the new rules. Not being able to connect with certificates will have huge impacts on the design of the database (as the accounts used will not be the same, especially for Active Directory management)&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;STRONG&gt;Benefits:&lt;/STRONG&gt; Besides fitting with our clients rules, this may helps others teams that will face the same situation as us : trying to enhance security.&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;Please let us know if you have any questions or remarks&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;Regards,&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;Kevin&amp;nbsp;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;&lt;BR /&gt;&lt;/DIV&gt;</description>
    <pubDate>Mon, 05 Sep 2022 09:29:00 GMT</pubDate>
    <dc:creator>Airbus</dc:creator>
    <dc:date>2022-09-05T09:29:00Z</dc:date>
    <item>
      <title>[Replicate] Add Kerberos and/or SSL certificate connection to Oracle endpoints</title>
      <link>https://community.qlik.com/t5/Suggest-an-Idea/Replicate-Add-Kerberos-and-or-SSL-certificate-connection-to/idi-p/1976836</link>
      <description>&lt;DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;Hello everyone,&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;Hope you're all fine.&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;In order to enhance our security display on client's side, we would like Replicate to fit with a specific way of connection, especially on Oracle endpoints.&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;As described in the title, the idea would be to be able to connect to an Oracle endpoint (Source/Target) with only SSL certificate or Kerberos way of working. This means that the account we will be using would not be passworded, and so used as credentials.&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;STRONG&gt;Functionality:&lt;/STRONG&gt; Currently, we are able to connect with "classic" credentials. We would like to disable the password of these credentials, and connect with a certificate, or Kerberos.&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;STRONG&gt;Motivation:&lt;/STRONG&gt; Having this feature added would help us control the usage of these accounts, and improve the security in our environment. &lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;STRONG&gt;Importance:&lt;/STRONG&gt; To go deeper, the change has already been submitted to our business, and we will have to fit with the new rules. Not being able to connect with certificates will have huge impacts on the design of the database (as the accounts used will not be the same, especially for Active Directory management)&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;STRONG&gt;Benefits:&lt;/STRONG&gt; Besides fitting with our clients rules, this may helps others teams that will face the same situation as us : trying to enhance security.&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;Please let us know if you have any questions or remarks&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;
&lt;DIV&gt;&lt;SPAN&gt;Regards,&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;Kevin&amp;nbsp;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;&lt;BR /&gt;&lt;/DIV&gt;</description>
      <pubDate>Mon, 05 Sep 2022 09:29:00 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Suggest-an-Idea/Replicate-Add-Kerberos-and-or-SSL-certificate-connection-to/idi-p/1976836</guid>
      <dc:creator>Airbus</dc:creator>
      <dc:date>2022-09-05T09:29:00Z</dc:date>
    </item>
    <item>
      <title>Re: [Replicate] Add Kerberos and/or SSL certificate connection to Oracle endpoints</title>
      <link>https://community.qlik.com/t5/Suggest-an-Idea/Replicate-Add-Kerberos-and-or-SSL-certificate-connection-to/idc-p/1988769#M10550</link>
      <description>&lt;P&gt;Hello and thanks for the suggestion. We are considering supporting SSL for source and target authentication but have no current plans for Kerberos.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I will update as we progress further.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;--bobv--&lt;/P&gt;</description>
      <pubDate>Tue, 04 Oct 2022 16:20:15 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Suggest-an-Idea/Replicate-Add-Kerberos-and-or-SSL-certificate-connection-to/idc-p/1988769#M10550</guid>
      <dc:creator>bobvecchione</dc:creator>
      <dc:date>2022-10-04T16:20:15Z</dc:date>
    </item>
    <item>
      <title>Re: [Replicate] Add Kerberos and/or SSL certificate connection to Oracle endpoints - Status changed to: Closed - Already Available</title>
      <link>https://community.qlik.com/t5/Suggest-an-Idea/Replicate-Add-Kerberos-and-or-SSL-certificate-connection-to/idc-p/2010609#M10924</link>
      <description>&lt;P&gt;We already have ability to connect source end point using SSL Certificate with Oracle.&lt;/P&gt;&lt;P&gt;Please refer to&amp;nbsp;&lt;A href="https://help.qlik.com/en-US/replicate/May2022/Content/Replicate/Main/Oracle/OracleDB_Target_DiaBox.htm#Setting%20general%20connection%20properties" target="_blank"&gt;Setting general connection properties #Setting general connection properties ‒ Qlik Replicate&lt;/A&gt; on how to set it up.&lt;/P&gt;&lt;P&gt;It’s also explained on Oracle site &lt;A href="https://oracle-base.com/articles/misc/configure-tcpip-with-ssl-and-tls-for-database-connections#prerequisites" target="_blank"&gt;ORACLE-BASE - Configuration of TCP/IP with SSL and TLS for Database Connections&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Nov 2022 19:56:56 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Suggest-an-Idea/Replicate-Add-Kerberos-and-or-SSL-certificate-connection-to/idc-p/2010609#M10924</guid>
      <dc:creator>marina_marshak</dc:creator>
      <dc:date>2022-11-29T19:56:56Z</dc:date>
    </item>
  </channel>
</rss>

