Oracle Database on RDS Scanning Process: Step-by-Step Guide

Last updated: February 16, 2026

This guide explains how to configure, validate, and scan Oracle RDS databases with Export Assist in AWS, helping you identify sensitive data, detect misconfigurations, and export results to keep datab

Prerequisites:

Before starting the scanning process, ensure the following:

  1. Database Access: The user must have read-only access to all schemas in the Oracle database.

  2. Export Assist Deployment: The Export Assist application must be deployed in the customer’s VPC same as the database.

  3. AWS Integration: The account should be integrated with AWS Cloud. Refer to the AWS Integration Guide under the Integrations section in the Gitbook for detailed instructions.


Scanning Process:

Step 1: AWS Integration Configuration

  • After completing the AWS Integration, navigate to Cloud under Data Inventory.

Click on Discover Data Stores to display a list of all available Oracle databases in your

environment. You can search for your DB through Search Bar at the top or by selecting RDS option from the Infratstructure filter at the top.

Step 2: Configure Data Store for Scanning

  • Once the Oracle database is listed on the UI, click on the Data Store.

  • Click on the Scan Settings option.

  • Enter the Username and Password and select the correct Assist for the Oracle database. After entering the credentials, click on Save Configuration to apply the settings.

Note: Connection Validation Before starting the scan, enter the username and password and select the appropriate Assist. This will validate the connection to the database. If the connection is successful, scanning will be enabled. If it fails, please review the connection configurations and retry.

Step 3: Initiate Scanning Process

  • Once the configuration is saved successfully, a confirmation message will appear.

  • Click on Scan Data Store to begin the classification of the database.

Step 4: Review Scan Results

  • After the scan is completed, navigate to the Overview page.

    • You will see detailed information on:

      • Account Properties

      • Security Configurations

      • Sensitive Records Data

  • In the Misconfiguration tab, check for any Oracle DB misconfigurations.

  • You can also view additional sensitivity details in the File View and Table View formats.

  • If any entities are found to be false positives, mark them by toggling the False Positive button. This action allows you to manage the accuracy of the scan results.

  • You can view the false positives by toggling the button at the top of the page.

  • Additionally, the Scan History section provides a detailed log of all previous scans, allowing for easy reference.


Additional Features:

  1. Stop Scan:

    • At any stage of the scan, you can trigger the Stop Scan option if you wish to halt the process prematurely. This option can be useful for managing resources or stopping an incomplete scan.

  2. Export Sensitivity Data to CSV:

    • After the scan is completed, you can download the sensitivity details in CSV format. This feature allows you to export valuable insights and share them for further analysis or auditing purposes.