Table of Contents
- Title and Copyright Information
- Preface
- Changes in Oracle AVDF
-
1
Overview of Oracle Audit Vault and Database Firewall Installation
- Learning About Oracle Audit Vault and Database Firewall
-
Platform Support
-
Product Compatibility Matrix
- Supported Hardware
- Supported Virtualization Platforms
- Audit Collection and Database Firewall Support for Databases
- Audit Collection Support for Operating Systems
- Audit Collection Support for Directory Services
- Audit Collection Support for File Systems
- Supported Operating Systems for Audit Vault Agent and Host Monitor Agent
- Support for Transaction Log Audit Collection Using Oracle GoldenGate
- Supported Browsers
- Support for External Systems
- Audit Vault Agent: Supported and Tested Java Runtime Environment
- Compatibility with Oracle Enterprise Manager
-
Product Compatibility Matrix
-
2
Oracle Audit Vault and Database Firewall Pre-Install Requirements
- Oracle AVDF Deployment Checklist
- Oracle Audit Vault and Database Firewall Hardware Requirements
- Oracle Audit Vault and Database Firewall Software Requirements
- Installing Audit Vault Server on VMware
- Privileges Required to Install Oracle Audit Vault and Database Firewall
- Audit Vault Agent Requirements
- Host Monitor Agent Requirements
- 3 Downloading and Installing Oracle Audit Vault and Database Firewall
-
4
Post-Install Configuration Tasks
- Audit Vault Server Post-Installation Tasks
- Database Firewall Post-Installation Tasks
- Accessing the Audit Vault Server Post-Install Configuration Page
- Setting the Usernames and Passwords of Audit Vault Server Users
- Setting the Audit Vault Server Time (Strongly Recommended)
- Setting the Audit Vault Server DNS Servers (Recommended)
- Networking Setup And Configuration
-
5
Behavior Changes, Deprecated, and Desupported
Platforms and Features
- Audit Vault and Database Firewall 20.18
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.15
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.14
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.13
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.12
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.11
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.10
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.9
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.8
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.7
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.6
- Behavior Changes, Deprecation, and Desupport Notices in Oracle Audit Vault and Database Firewall 20.1
-
6
Patching Oracle Audit Vault and Database
Firewall Release 20
- About Patching Oracle Audit Vault and Database Firewall
- Download the Files
- Pre-update Tasks
- Update the Audit Vault Server
- Verify That Audit Vault Agents and Host Monitor Agents Were Automatically Updated
- Update the Database Firewalls
-
Post-update Tasks
- Confirm the Update Process
- Post Upgrade Agent User Security Hardening
- Enable Administrator Access to Existing Archive Locations
- Enable Archiving Functionality for High Availability
- Clear Unused Kernels from Oracle Audit Vault and Database Firewall
- Check the Observer Status After Updating to Oracle AVDF 20.7 or Later for High Availability
- Configure Audit Vault Server Backups
- Schedule Maintenance Jobs
- Enable FIPS Mode If It Was Disabled Before Patching to AVDF 20.10
- Update Alert Notification Template for Alert Policies After Patching to AVDF 20.11
- Retrieve Audit Policies After Patching to 20.12
- Recover the Database If an Update Fails
-
Updating Oracle AVDF with Minimal Downtime by
Using Backup and Restore
- About the Update Process
- Prerequisites
- Configure the Source and Destination Audit Vault Servers
- Create a Hot Backup of the Source Audit Vault Server
- Restore the Hot Backup to the Destination Audit Vault Server
- Set the Archive Log Destination on the Destination Audit Vault Server
- Update the Destination Audit Vault Server to the Latest Release
- (High Availability Only) Pair the Primary and Standby Audit Vault Servers
-
Replicate the Data That Was Collected During
the Update Process
- Start the Replication on the Destination Audit Vault Server
- Check the Replication Status on the Destination Audit Vault Server
- Set Up the Purge Task on the Destination Audit Vault Server
- Check the Replication Lag Time on the Destination Audit Vault Server
- Stop All Monitoring Points and Audit Trails on the Source Audit Vault Server
- Stop the Replication on the Destination Audit Vault Server
- Update and Migrate All Monitoring and Collection to the Destination Audit Vault Server
- Start All Audit Trails on the Destination Audit Vault Server
- Uninstall the Replication Patches from the Source and Destination Audit Vault Servers
-
7
Upgrading Oracle Audit Vault and Database
Firewall from Release 12.2 to Release 20
- About Upgrading Oracle Audit Vault and Database Firewall
-
Upgrading from Oracle AVDF 12.2 to Release
20.8
- Download the Files
-
Pre-update Tasks
- Migrate Host Monitor Agent on Windows
- Back Up the Current Oracle Audit Vault and Database Firewall Installation
- Set the Host Monitor Agent and Audit Vault Agent TLS Version
- Ensure That the System Has Sufficient Space to Purge the Alert Queue
- Release Existing Tablespaces That Are Retrieved Manually
- Preserve File Customizations
- Ensure That the Boot Device Is Less Than 2 TB
- Ensure That the Boot Partition Has at Least 500 MB
- Verify That the SYS User Is Unlocked and the Password Is Not Expired
- Update the Audit Vault Server
- Verify That Audit Vault Agents and Host Monitor Agents Were Automatically Updated
- Update the Database Firewalls
-
Post-update Tasks
- Confirm the Update Process
- Post Upgrade TLS Security Hardening
- Post Upgrade Agent User Security Hardening
- Add Preexisting SQL Clusters to New Cluster Sets After Upgrading
- Change the Database Firewall In-line Bridge to an Equivalent Proxy Configuration
- Enable Administrator Access to Existing Archive Locations
- Enable Archiving Functionality for High Availability
- Clear Unused Kernels from Oracle Audit Vault and Database Firewall
- Check the Observer Status After Updating to Oracle AVDF 20.7 or Later for High Availability
- Configure Audit Vault Server Backups
- Schedule Maintenance Jobs
- Add a Privilege to the Native Network Encryption User for Decrypting the Native Network Encryption
- Retrieving the Security Assessment and Resetting the Baseline to a DBSAT 3.1 Assessment
- Recover the Database If an Update Fails
- Patching Oracle AVDF 20.8 to Apply the Latest Release Update
- 8 Uninstalling Oracle Audit Vault and Database Firewall
-
A
Troubleshooting Oracle Audit Vault and Database Firewall
- Information to Provide Support When Filing a Service Request
- Error When Installing Audit Vault Server in Releases 20.1 to 20.3
- Conflicting Data on Storage Added to Oracle AVDF
- EFI Related Error When Installing Audit Vault Server on VMware
- Cannot Access the Audit Vault Server Console
- Collecting Logs to Debug Installation Failures
- Unable to Reach Gateway Error
- Issue with Configuring or Managing Oracle AVDF through Oracle Enterprise Manager Cloud Control
- Installation Stops Progressing After Entering the IP Address
- No Signal Error During Post-Install Tasks
-
Pre-upgrade RPM Warnings
- RPM Upgrade Failed
- Uninstalling the Pre-Upgrade RPM for AVDF 20.12 and Later Doesn't Remove Filesystem
- Pre-upgrade RPM Failure Due to Insufficient Memory
- Insufficient Space Error in /var/lib/oracle File System Reported by Pre-upgrade RPM
- Insufficient Space Error in / File System Reported by Pre-upgrade RPM
- Pre-upgrade RPM Could Not Stop Certain Processes During Oracle AVDF Upgrade
- Pre-upgrade RPM Fails with "Unable to Stop Observer"
- Pre-upgrade RPM Check: Alert Queue Space Warning
- Pre-upgrade RPM Check: Boot Device Is Greater Than 2 TB
- Pre-upgrade RPM Check: Boot Partition Space Warning
- Pre-upgrade RPM Check: Legacy Crypto Warning
- Pre-upgrade RPM Fails with "Not All Processes Were Stopped"
- Pre-upgrade RPM Check: Agent Failure Checks - Upgrade Prerequisites
- Pre-Upgrade Agent Permission Validation
- SSH Becomes Disabled After Updating Oracle AVDF with FIPS Enabled
- SSH Connection Times Out When Uninstalling the Pre-Upgrade RPM
- Installation Pauses After Entering the Root Password
- When Upgrading to Oracle AVDF 20.3 ELMIG_POPULATE_CLUSTERS_202 and ELMIG_CONVERT_HASH_202 Are Reported as INVALID in dba_objects Table
- Error Occurred Trying to Format SDAF1 When Installing Oracle AVDF
- Audit Vault Agent Failed on Startup: OAV-10: Failed to Release Connection to DB
- Upgrade to AVDF 20.4 Failed During upgrade_apex Step
- Missing "Save as" Option in Web Console After Upgrading Oracle Audit Vault Server
- Oracle AVDF 20.7/20.8 Installation Fails Due to Package Download Error
- Calculating Minimum Required In-Memory Size for AVDF to Prevent "Insufficient Memory" Errors
- Upgrading 20.12 to 20.13 Fails on VMware With Error at Privileged Migrations Step
- Package Version Mismatch After Patching Leading to Perl Package Update Failure
- AVS Installation Fails with Mellanox NIC on Oracle Linux 8
- Server Restart Fails to Start ASM Instance Due to Missing ASM Disks
- Database Firewall Diagnostics Reporting a Problem Alert
- B Installing Oracle AVDF on Oracle Database Appliance (ODA)