Configure the required policies to enable secure Vault and Secrets
access, such as use secrets, use vaults, and read secret-bundles. For more
information, see Minimum recommended policies.
If using TLS/ mTLS, convert the JKS truststore or truststore and
keystore to PKCS12 format to use in the connection.
Use the keytool utility in the JDK to convert to the
PKCS12 format.
For the keystore, the keytool utility prompts you for a
password, as shown in the following example:
Upload the file to the connection's Producer
properties in the Settings section of Advanced
options.
Create a source
connection
To create a source Microsoft Fabric Eventstream connection:
From the OCI GoldenGate Overview page, click
Connections.
You can also click Create Connection under the
Get started section and skip to step 3.
On the Connections page, click Create Connection.
On the Create Connection page, complete the fields as follows:
For Name, enter a name for the connection.
(Optional) For Description, enter a description that helps
you distinguish this connection from others.
(For GoldenGate on Multicloud only) Select your Subscription, and
then complete the following fields.
From the Compartment dropdown, select the compartment in
which the Resource Anchor resides.
Select the Multicloud partner region.
Select your Partner availability zone. The available options
populate based on the selected Multicloud partner region.
For Compartment, select the compartment in which to create
the connection.
From the Type dropdown,
select Microsoft Fabric Eventstream.
Under Bootstrap servers:
Enter the
Host and
Port number for the
Bootstrap server. Enter the Private IP only if the
hostname is not resolvable from your subnet or if
it uses SSL/TLS.
Note:
If you enter a private IP, then OCI GoldenGate rewrites the private IP in the format,
ip-10-0-0-0.ociggsvc.oracle.vcn.com.
Tip:
All
nodes in the cluster must have FQDNs to allow for
traversal over private endpoints.
(Optional) Click +
Bootstrap server to add another
bootstrap server.
For Security protocol,
select one of the following and then complete the
corresponding fields:
Plaintext
SASL over plaintext
SASL over SSL
SSL
Expand Show advanced options. You can configure the following
options:
Security
Deselect Use vault secrets if you prefer not to use
password secrets for this connection. If not selected:
Select Use Oracle-managed encryption key to leave
all encryption key management to Oracle.
Select Use customer-managed encryption key to select
a specific encryption key stored in your OCI Vault to encrypt your
connection credentials.
Network connectivity
Shared endpoint, to share an endpoint
with the assigned deployment. You must allow connectivity from the
deployment's ingress IP.
Dedicated endpoint, for network
traffic through a dedicated endpoint in the assigned subnet in your VCN. You
must allow connectivity from this connection's ingress IPs.
Note:
If a dedicated connection remains unassigned for seven
days, then the service converts it to a shared connection.
After the connection is created, it appears in the
Connections list. Ensure that you assign the connection to a deployment to use it as a source
or target in a replication.
Create a target
connection
To create a target Microsoft Fabric Eventstream connection:
From the OCI GoldenGate Overview page, click
Connections.
You can also click Create Connection under the
Get started section and skip to step 3.
On the Connections page, click Create Connection.
On the Create Connection page, complete the fields as follows:
For Name, enter a name for the connection.
(Optional) For Description, enter a description that helps
you distinguish this connection from others.
(For GoldenGate on Multicloud only) Select your Subscription, and
then complete the following fields.
From the Compartment dropdown, select the compartment in
which the Resource Anchor resides.
Select the Multicloud partner region.
Select your Partner availability zone. The available options
populate based on the selected Multicloud partner region.
For Compartment, select the compartment in which to create
the connection.
From the Type dropdown,
select Microsoft Fabric Eventstream.
Under Bootstrap servers:
Enter the
Host and
Port number for the
Bootstrap server. Enter the Private IP only if the
hostname is not resolvable from your subnet or if
it uses SSL/TLS.
Note:
If you enter a private IP, then OCI GoldenGate rewrites the private IP in the format,
ip-10-0-0-0.ociggsvc.oracle.vcn.com.
Tip:
All
nodes in the cluster must have FQDNs to allow for
traversal over private endpoints.
(Optional) Click +
Bootstrap server to add another
bootstrap server.
For Security protocol,
select one of the following and then complete the
corresponding fields:
Plaintext
SASL over plaintext
SASL over SSL
SSL
Expand Show advanced options. You can configure the following
options:
Security
Deselect Use vault secrets if you prefer not to use
password secrets for this connection. If not selected:
Select Use Oracle-managed encryption key to leave
all encryption key management to Oracle.
Select Use customer-managed encryption key to select
a specific encryption key stored in your OCI Vault to encrypt your
connection credentials.
Network connectivity
Shared endpoint, to share an endpoint
with the assigned deployment. You must allow connectivity from the
deployment's ingress IP.
Dedicated endpoint, for network
traffic through a dedicated endpoint in the assigned subnet in your VCN. You
must allow connectivity from this connection's ingress IPs.
Note:
If a dedicated connection remains unassigned for seven
days, then the service converts it to a shared connection.
After the connection is created, it appears in the
Connections list. Ensure that you assign the connection to a deployment to use it as a source
or target in a replication.