Configuring Oracle Database Exadata Express Cloud Service Target Using TCPS

Learn how to configure Oracle Database Exadata Express Cloud Service targets in TCPS mode.

Step 1: Installing Audit Vault Agent on registered On-premises Hosts and Configuring TCPS

This step installs Oracle Audit Vault Agent on registered on-premises hosts and configures TCPS.

See Step 2: Installing Oracle Audit Vault Agent on Registered On-premises Hosts and Configuring TCPS.

Prerequisites

Step 2: Creating User Accounts on Oracle Exadata Express Cloud Service Instances

This configuration step creates user accounts on Oracle Exadata Express Cloud Service Instances.

Procedure:

  1. Ensure that the connection has been established to the Oracle Database Cloud Service instances through TCPS as user with SYSDBA administrative privilege.

  2. Create Server Wallet and certificate.

  3. Create Client Wallet and certificate.

  4. Exchange Client and Server certificates.

  5. Configure Server network.

  6. After the above steps are complete, you can now connect to the DBCS instances in TCPS using the Audit Vault Agent or tools like SQLPlus and SQLDeveloper.

  7. Run the following commands to create audit retrieval user account scripts:

    oracle_AVDF_E1_user_setup.sql

    oracle_AVDF_E1_drop_db_permissions.sql

    See Also: Configuring TCPS Connections for DBCS Instances for creating Server Wallet, Client Wallet, certificates, and exchanging certificates.

Step 3: Creating Targets on Oracle Audit Vault Server for Oracle Exadata Express Cloud Service Instances

This configuration step creates targets on Oracle Audit Vault Server for Oracle Exadata Express Cloud Service instances.

  1. Create a target on Oracle Audit Vault Server for the DBCS Instance. See Step 5: Creating Targets on Audit Vault Server for Oracle Database Cloud Service Instances.

  2. Run the following command to set mandatory target attribute for SSL version:

    av.collector.stconn.oracle.net.ssl_version = 1.2