- Title and Copyright Information
- Preface
- Changes in Oracle Database Security Central
- Introducing Oracle Database Security Central
- Learning About Oracle Database Security Central
- Supported Platforms for Oracle Database Security Central
- Oracle Database Security Central System Features
- About Oracle Database Security Central
- Security Technical Implementation Guides for Oracle Database Security Central
- System Requirements for Oracle Database Security Central
- Supported Targets for Oracle Database Security Central
- Oracle Database Security Central Administrative Features
- Oracle Database Security Central Auditing Features
- Integrating Oracle Database Security Central with Oracle Key Vault
- Separation of Duties
- Understanding the Administrator’s Role
- Planning Your Oracle Database Security Central System Configuration
- Guidance for Planning Your Oracle Database Security Central Configuration
- Step 1: Plan Your Oracle Audit Vault Server Configuration
- Step 2: Plan Your Oracle Database Firewall Configuration
- Step 3: Plan Your Oracle Audit Vault Agent Deployments
- Step 4: Plan Your Audit Trail Configurations
- Step 5: Plan for High Availability
- Step 6: Plan User Accounts and Access Rights
- Summary of Configuration Steps
- Using Oracle Database Security Central Console
- Using the Audit Vault Command Line Interface
- Logging In to Oracle DBSecCentral Appliances Through SSH
- General Security Guidelines
- Installing Oracle Database Security Central Securely to Protect Your Data
- General Security Recommendations
- External Network Dependencies
- Considerations for Deploying Network-Based Solutions
- Monitoring Encrypted Traffic with the Database Firewall
- Managing Database Firewall Server Side SQL and Context Configurations
- How Oracle DBSecCentral Works with Various Database Access Paths
- Database Firewall Configuration for Oracle Database Target Configured in Shared Server Mode
- Additional Client and Listener Behavior Considerations
- Security Considerations for Custom Collector Development
- About Setting Transport Layer Security Levels
- Certificates
- Configuring Audit Vault Server
- About Configuring Audit Vault Server
- Changing the UI (Console) Certificate for Audit Vault Server
- Specifying Initial System Settings and Options on Audit Vault Server (Required)
- Specifying the Server Date, Time, and Keyboard Settings
- Changing the Time Zone
- Specifying Audit Vault Server System Settings
- Changing the Primary Audit Vault Server Network Configuration
- Changing the Standby Audit Vault Server Network Configuration
- Configuring or Changing the Audit Vault Server Services
- Changing the Standby Audit Vault Server System Settings
- Changing IP Addresses of Active and Registered Agents
- Updating the Audit Vault Server IP Address in the NTP Configuration File
- Configuring Security Advisor
- Configuring HTTP proxy for Security Advisor
- Configuring Audit Vault Server Syslog Destinations
- Configuring Custom Ports on Network Interfaces
- Configuring the Email Notification Service
- Configuring Archive Locations and Retention Policies
- Registering Database Firewall in Audit Vault Server
- Testing Audit Vault Server System Operations
- Configuring Fiber Channel-Based Storage for Audit Vault Server
- Fiber Channel Based Multipath in Oracle DBSecCentral
- Adding Network Address Translation IP Addresses to Audit Vault Agent
- Monitoring Audit Vault Server
- Application Auditing
- Operating System and Repository Auditing
- About Auditing Operating System
- Audit Policies Used in Application Auditing
- Viewing DBSecCentral OS and Repository Audit Report
- Stop DBSecCentral Operating System and Repository Auditing
- Start DBSecCentral Operating System and Repository Auditing
- About Purging Unified Audit Trail on the Main Audit Vault Server
- Configuring Database Firewall
- About Configuring Database Firewall
- Introduction to Database Firewall Deployment
- Specifying the Audit Vault Server Certificate and IP Address
- Managing the Oracle Database Firewall Network and Services Configuration
- Setting the Date and Time in Database Firewall
- Changing the IP Address on a Single Instance of the Database Firewall Server
- Changing the Database Firewall Host Name
- Configuring the Database Firewall and Its Traffic Sources on Your Network
- Viewing the Status and Diagnostics Report for Database Firewall
- Configure and Download the Diagnostics Report File
- Configuring Encapsulated Remote Switched Port Analyzer with Database Firewall
- Registering Hosts and Deploying the Agent
- About Registering Hosts and Deploying the Agent
- Registering Hosts on the Audit Vault Server
- Deploying the Audit Vault Agent on Host Computers
- Audit Vault Agent Requirements
- Audit Vault Agent Machine Java Best Practices
- Validation During Audit Vault Agent Deployment
- About Deploying the Audit Vault Agent
- Steps Required to Deploy and Activate the Audit Vault Agent
- Registering the Host
- Deploying the Audit Vault Agent
- Activating and Starting the Audit Vault Agent
- Changing Host Names
- Configuring Agent Auto Restart Functionality
- Configuring Agent Auto Restart Functionality Remotely
- Check if Audit Vault Agent Has Auto Restart Functionality Enabled
- Registering and Unregistering the Audit Vault Agent as a Windows Service
- Stopping, Starting, and Other Agent Operations
- Updating Audit Vault Agent
- Deploying Plug-ins and Registering Plug-in Hosts
- Deleting Hosts from Audit Vault Server
- Configuring Targets, Audit Trails, and Database Firewall Monitoring Points
- About Configuring Targets
- Discovering Databases for Target Registration
- About Discovering Databases for Target Registration
- Executing Nmap Scan Commands
- Importing the XML File for Database Discovery as a Super Administrator
- Assigning Databases for Registration in Database Discovery as a Super Administrator
- Registering Assigned Databases in Database Discovery
- Managing Discovered Databases as a Super Administrator
- Viewing the Status of the XML Import Job
- Registering or Removing Targets in Audit Vault Server
- Creating Groups
- Moving a Target from One Host Machine to Another
- Preparing Targets for Audit Data Collection
- Using SQL Firewall with DBSecCentral
- Using Database Vault with DBSecCentral
- Configuring and Managing Audit Trail Collection
- Prerequisites for Adding Audit Trails in Oracle Audit Vault Server
- Adding Audit Trails with Agentless Collection
- Adding Audit Trails with Agent-Based Collection
- Stopping, Starting, and Autostart of Audit Trails in Oracle Audit Vault Server
- Checking the Status of Trail Collection on the Audit Vault Server
- Audit Collection Best Practices
- Handling New Audit Trails with Expired Audit Records
- Deleting an Audit Trail
- Converting Audit Record Formats for Collection
- Configuring Audit Trail Collection for Oracle Real Application Clusters
- Configuring Audit Trail Collection for CDBs and PDBs
- Migrating Audit Trails from Agentless Collection to Agent-Based Collection
- Migrating Audit Trails to Another Audit Vault Agent
- Audit Collection Downtime Alerts
- Configuring Database Firewall Monitoring Points
- About Configuring Database Firewall Monitoring Points for Targets
- Creating and Configuring a Database Firewall Monitoring Point
- Modifying a Database Firewall Monitoring Point
- Starting, Stopping, or Deleting Database Firewall Monitoring Points
- Viewing the Status of Database Firewall Monitoring Points
- Finding the Port Number Used by a Database Firewall Monitoring Point
- Configuring a Database Firewall to Connect to an Oracle Autonomous AI Database
- Configuring Stored Procedure Auditing (SPA)
- Configuring Database Firewall for Databases That Use Native Network Encryption
- Configuring Advanced Settings for Database Firewall
- Monitoring TLS Encrypted SQL Traffic
- Using Default Self Signed Certificates Created During Monitoring Point Creation
- Configuring Mutual Authentication for Inbound or Outbound TLS Communication
- Using External Certificates Signed by Certificate Authority
- Disabling Mutual Authentication for Inbound or Outbound TLS Communication
- Configuring a TLS Proxy for an Oracle Real Application Clusters Database
- (Optional) Enabling Common Name Verification for the Database Server
- Configuring and Using Database Response Monitoring
- Securing the Agent and Oracle Database Target Connection
- Upgrading the Target Database
- Using the Host Monitor Agent
- About Host Monitoring
- Installing and Enabling the Host Monitor Agent
- Host Monitor Agent Requirements
- Validation During Host Monitor Agent Deployment
- Registering the Host Machine That Will Run the Host Monitor Agent
- Deploying the Audit Vault Agent and Host Monitor Agent
- Creating a Target for the Host-Monitored Database
- Creating a Monitoring Point for the Host Monitor Agent
- Create a Network Audit Trail
- Starting, Stopping, and Other Host Monitor Agent Operations
- Updating a Host Monitor Agent (Unix Hosts Only)
- Using Mutual Authentication for Communication Between the Database Firewall and the Host Monitor Agent
- High Availability in Oracle DBSecCentral
- About High Availability in Oracle DBSecCentral
- Configuring High Availability for Database Firewalls
- High Availability for Database Firewall
- High Availability for Database Firewall in Host Monitor Agent or Out of Band Modes
- Swapping Roles Between Primary and Standby Database Firewalls
- Unpair Primary and Standby Database Firewalls
- Configuring High Availability of Database Firewall Instances With Monitoring Points
- Configuring High Availability for Database Firewalls in Proxy Mode
- Deploy Oracle DBSecCentral High Availability Configuration using RAC
- Disaster Recovery Solution
- About High Availability in Audit Vault Servers
- Prerequisites for Configuring High Availability for Audit Vault Servers
- Configure the Designated Standby Audit Vault Server
- Configure the Designated Primary Audit Vault Server
- Checking the High Availability Status of an Audit Vault Server
- Post High Availability Pairing Steps
- Audit Vault Agent Communication with Audit Vault Server in High Availability
- Swapping Roles Between a Primary and Standby Audit Vault Server
- Initiating a Switchover Between Primary and Standby Audit Vault Servers
- Handling a Failover Scenario
- Unpair Primary and Standby Audit Vault Servers
- Disabling or Enabling Failover of the Audit Vault Server
- Archiving and Retrieving in High Availability
- Backup and Restore of Audit Vault Server in High Availability
- Removing High Availability Configuration
- Managing Archival and Retrieval in High Availability Environments
- Integration with Third Party SIEM and Log-data Analysis Tools
- Using Oracle Database Firewall with Oracle RAC
- Oracle Database Security Central on Oracle Cloud Infrastructure
- About Oracle Oracle Database Security Central on Oracle Cloud Infrastructure
- Benefits of Provisioning Oracle DBSecCentral on Oracle Cloud Infrastructure
- Supported Oracle Cloud Infrastructure Virtual Machine Shapes
- Provisioning Oracle DBSecCentral with the Oracle Cloud Marketplace Image
- Connecting to Oracle DBSecCentral Instance
- Scaling Up Oracle DBSecCentral Instances
- Changes in Functionality for Oracle DBSecCentral Instances on OCI
- Ports for Communication between Oracle Oracle Database Security Central Components
- High Availability for Oracle Oracle Database Security Central Instance
- Deploying Audit Vault Agents
- Configuring Audit Trail Collection
- Deploying Database Firewall for Monitoring
- Monitoring Oracle Autonomous AI Database Services
- Monitoring DB Systems on OCI
- Backup and Restore of Oracle Oracle Database Security Central Instances in OCI
- Archiving and Retrieving Audit Data
- Starting or Stopping the Oracle Oracle Database Security Central Instance
- Terminating Oracle Oracle Database Security Central Instance
- Oracle Database Security Central Firewall Hybrid Cloud Deployment
- Oracle Database Security Central Hybrid Cloud Deployment and Prerequisites
- Opening Ports on Oracle Database Cloud Service
- Configuring Hybrid Cloud Target Using TCP
- Step 1: Registering On-premises Host on the Audit Vault Server
- Step 2: Installing Audit Vault Agent on Registered On-premises Hosts
- Step 3: Creating User Accounts on Oracle Database Cloud Service Target Instances
- Step 4: Setting Up or Reviewing Audit Policies on Target Oracle Database Cloud Service Instances
- Step 5: Creating Targets on Oracle Audit Vault Server for Oracle Database Cloud Service Instances
- Step 6: Starting Audit Trail on Audit Vault Server for Oracle Database Cloud Service Instances
- Configuring TCPS Connections for DBCS Instances
- Configuring Hybrid Cloud Target Using TCPS
- Step 1: Registering On-premises Host on Oracle Audit Vault Server
- Step 2: Installing Oracle Audit Vault Agent on Registered On-premises Hosts and Configuring TCPS
- Step 3: Creating User Accounts on Oracle Database Cloud Service Target Instances
- Step 4: Setting Up or Reviewing Audit Policies on Target Oracle Database Cloud Service Instances
- Step 5: Creating Targets on Audit Vault Server for Oracle Database Cloud Service Instances
- Step 6: Starting Audit Trail on Audit Vault Server for Oracle Database Cloud Services Instances
- Configuring Oracle Database Exadata Express Cloud Service Target Using TCPS
- Configuring Oracle Database Exadata Express Cloud Service Target Using TCP
- Step 1: Registering On-premises Hosts on Oracle Audit Vault Server
- Step 2: Installing Audit Vault Agents on Registered On-Premises Hosts
- Step 3: Creating User Accounts on Oracle Exadata Express Cloud Target Instances
- Step 4: Setting Up or Reviewing Audit Policies on Target Oracle Exadata Express Cloud Instances
- Step 5: Creating Targets on Oracle Audit Vault Servers for Oracle Exadata Express Cloud Instances
- Step 6: Starting Audit Trail on Oracle Audit Vault Server for Oracle Exadata Express Cloud Instances
- Configuring Autonomous Data Warehouse and Autonomous Transaction Processing
- Step 1: Install Audit Vault Agent on Registered Host
- Step 2: Create User Accounts on Oracle Cloud Instances
- Step 3: Create Targets on Audit Vault Server for the Cloud Instances
- Step 4: Start Audit Trail on Audit Vault Server for the Autonomous Data Warehouse and Autonomous Transaction Processing Cloud Instances
- Step 5: (Optional) Revoke Database Security Central Privileges for a User
- Managing User Accounts and Access
- About Oracle Database Security Central Administrative Accounts
- Security Technical Implementation Guides and Implementation for User Accounts
- Configuring Administrative Accounts for Oracle Audit Vault Server
- Guidelines for Securing Oracle Database Security Central User Accounts
- Creating Local Administrative User
- Viewing the Status of Administrator User Accounts
- Changing User Account Types for Audit Vault Server
- Unlocking User Accounts
- Unlocking Super Administrator or Super Auditor Users
- Deleting Oracle Audit Vault Server Administrator Accounts
- Configuring sudo Access for Users
- Managing User Access Rights to Targets and Groups
- Changing User Passwords in Oracle Database Security Central
- Integrating Oracle Database Security Central with Microsoft Active Directory or OpenLDAP
- Configuring Single Sign-On (SSO) for Oracle Database Security Central Console Users
- About SSO for Oracle Database Security Central Console Users
- Adding SSO Configurations
- Copying the Audit Vault Server SSO Certificate to the Identity Provider
- Enabling SSO Configurations
- Configuring ORDS After Enabling Oracle Access Manager as the SSO Identity Provider
- Creating New SSO Users
- Logging In to the Oracle Database Security Central Console as an SSO User
- Modifying SSO Users
- Disabling an SSO Configuration
- Configuring ORDS After Disabling Oracle Access Manager as the SSO Identity Provider
- Modifying an SSO Configuration
- Deleting an SSO Configuration
- Unlocking and Locking the AVSYS User
- Updating the Passwords for the AGENTUSR# and AVSRCUSR# Accounts
- Rotate the AVREPORTUSER Password
- Rotating the ORDS_PUBLIC_USER User Password
- Managing the Audit Vault Server and Database Firewalls
- Managing Audit Vault Server Settings, Status, and Maintenance Operations
- Changing Oracle Audit Vault Server Network and Services Configurations
- Managing Server Connectors for Email and Syslog
- Configuring Remote Syslog Over TLS
- Archiving and Retrieving Audit Data
- Managing Repository Encryption
- Backup and Restore of Audit Vault Server
- About Backup and Restore of Audit Vault Server
- Oracle Database Security Central Backup and Restore in a Real Application Cluster Environment
- Audit Vault Server Backup and Restore in High Availability Environment
- About Audit Vault Server Backup and Restore Utility
- Setting Up NFS for Audit Vault Server Backup and Restore
- Backup of Audit Vault Server
- Configuring Audit Vault Server Backup
- Performing Audit Vault Server Backup
- Monitoring and Validating the Audit Vault Server Backup
- Automating the Backup Schedule
- Performing Audit Vault Server Backup in High Availability
- Restoring from Audit Vault Server Backup
- Post Restore Tasks
- Monitor the Restore Process
- Restoring Audit Vault Server in High Availability
- Backing Up and Restoring the Database Firewall
- Enabling Oracle Database In-Memory for the Audit Vault Server
- Managing Plug-ins
- Monitoring and Adding Server Tablespace Space Usage
- Monitoring Server Archive Log Disk Space Use
- Monitoring Server Flash Recovery Area
- Monitoring Jobs
- Schedule Maintenance Jobs
- Downloading and Using the AVCLI Command Line Interface
- Downloading the Oracle Database Security Central SDK
- Managing Database Firewalls
- Changing the Database Firewall Network or Services Configuration
- Viewing Network Traffic for a Database Firewall
- Restarting or Powering Off Database Firewall
- Removing Database Firewall from Audit Vault Server
- Fetching an Updated Certificate from Database Firewall
- Viewing Diagnostics for Database Firewall
- Resetting Database Firewall
- Restoring Database Firewall Monitoring Points
- System Alerts
- Extending Storage
- Extending File System Storage
- Extending Storage for Collected Data
- Adding Local Disks to the Audit Vault Server ASM Disk Groups
- Configuring a SAN Repository
- Tuning the Audit Vault Server
- General Reference
- AVCLI Commands Reference
- About AVCLI Commands
- Agent Host AVCLI Commands
- Database Firewall AVCLI Commands
- Database Firewall Monitors AVCLI Commands
- Target AVCLI Commands
- Target Group AVCLI Commands
- Audit Trail Collection AVCLI Commands
- SMTP Connection AVCLI Commands
- Security Assessment AVCLI Commands
- Security Management AVCLI Commands
- SAN Storage AVCLI Commands
- Remote File System AVCLI Commands
- Server Management AVCLI Commands
- Collection Plug-In AVCLI Commands
- General Usage AVCLI Commands
- Retention Policy AVCLI Commands
- Alert Policy Management AVCLI Commands
- Unified Audit Policy AVCLI Commands
- AVCLI User Commands
- User Entitlement AVCLI Commands
- System Configuration Utilities
- Plug-In Reference
- About Oracle Database Security Central Plug-ins
- Plug-ins That are Shipped with Oracle Database Security Central
- About Plug-ins
- Oracle Database Plug-in for Oracle Database Security Central
- MySQL Plug-in for Oracle Database Security Central
- PostgreSQL Plug-in for Oracle Database Security Central
- IBM DB2 Plug-in for Oracle Database Security Central
- Quick JSON Target Type for Oracle Database Security Central
- QuickCSV Collector for Oracle Database Security Central
- Oracle Solaris Plug-in for Oracle Database Security Central
- Linux Plug-in for Oracle Database Security Central
- IBM AIX Plug-in for Oracle Database Security Central
- Microsoft Windows Plug-in for Oracle Database Security Central
- Microsoft Active Directory Plug-in for Oracle Database Security Central
- Summary of Data Collected for Each Audit Trail Type
- Scripts for Oracle DBSecCentral Account Privileges on Targets
- Audit Collection Consideration
- Audit Trail Cleanup
- Procedure Look-Ups: Connect Strings, Collection Attributes, Audit Trail Locations
- Installing the Audit Vault Agent Under Its Own OS User Account
- Transaction Log Audit Data Collection for Oracle Database
- Introduction to Transaction Log Audit Trails for Oracle Database Using Oracle GoldenGate
- Sizing Guidelines
- Restricted Use License for Oracle GoldenGate
- Installing Oracle GoldenGate on Oracle Databases
- Capturing Transaction Log Data from Oracle Database 12.2.0.1 and Later
- Create User and Grant Relevant Privileges
- Configure Oracle GoldenGate Parameters for Oracle Database
- Create a New Credential in the GoldenGate Administration Server
- Create a New Integrated Extract in Oracle GoldenGate Administration Server
- Periodic Backup of LogMiner Dictionary
- Sample Oracle GoldenGate Integrated Extract Parameter Files
- Audit Trail Creation in Audit Vault Console
- Audit Trail Cleanup
- Configure GoldenGate Downstream Mining
- Transaction Log Audit Data Collection for Microsoft SQL Server
- Introduction to the Transaction Log Audit Trail Using Oracle GoldenGate for Microsoft SQL Server
- Sizing Guidelines
- Restricted Use License for Oracle GoldenGate
- Installing Oracle GoldenGate for Microsoft SQL Server Databases
- Capturing Transaction Log Data from Microsoft SQL Server 2012 (Through Version 2019)
- Creating Audit Trails in the Audit Vault Console
- Cleaning Up Audit Trails
- Managing Session Information for SQL Server Transactions
- Transaction Log Audit Data Collection for MySQL
- Introduction to the Transaction Audit Log Trail Using Oracle GoldenGate for MySQL
- Sizing Guidelines
- Restricted Use License for Oracle GoldenGate
- Installing Oracle GoldenGate for MySQL Database
- Capturing Transaction Log Data from MySQL Server
- Guidelines for Creating Audit Trails in the Oracle Database Security Central Console
- Cleaning Up Audit Trails
- Transaction Log Audit Data Collection for PostgreSQL
- Introduction to the Transaction Audit Log Trail Using Oracle GoldenGate for PostgreSQL
- Sizing Guidelines
- Restricted Use License for Oracle GoldenGate
- Installing Oracle GoldenGate for PostgreSQL
- Capturing Transaction Log Data from PostgreSQL Server
- Guidelines for Creating Audit Trails in the Oracle Database Security Central Console
- Cleaning Up Audit Trails
- PostgreSQL Audit Data Collection Reference
- Ports Used by Oracle Database Security Central
- Message Code Dictionary for Oracle Database Security Central
- Security Technical Implementation Guides
- About Security Technical Implementation Guides
- Enabling and Disabling STIG Guidelines on Oracle Database Security Central
- Current Implementation of STIG Guidelines on Oracle Database Security Central
- Current Implementation of Database STIG Guidelines
- Additional STIG Guideline Notes
- Current Implementation of Operating System STIG Guidelines
- Enabling FIPS 140-2 in Oracle DBSecCentral
- About FIPS and Oracle DBSecCentral
- Enabling FIPS 140-2 on the Oracle Database Security Central console
- Enabling FIPS 140-2 in Database Firewall
- Enabling FIPS 140-2 for Database Firewall Instances in High Availability
- Verify the Status After Enabling FIPS 140-2 for Database Firewall Instances in High Availability
- Enabling FIPS 140-2 for Database Firewall Instances in High Availability Deployed in Proxy Mode
- Troubleshooting Oracle Database Security Central
- Information to Provide Support When Filing a Service Request
- Using Oracle Trace File Analyzer
- Ability to Boot Into Rescue Mode When Troubleshooting
- Audit Vault Agent or Host Monitor Agent Is Not Upgraded to the New Release
- Failure While Building a Host Monitor Agent or Collecting Oracle Database Trails
- Error When Running Host Monitor Agent Setup
- Host Monitor Agent Fails to Start
- Host Monitor Agent Network Trail is in STOPPED State
- Network Audit Trail Does Not Start on Unix Platforms
- Partial or No Traffic Seen for an Oracle Database Monitored by Oracle Database Firewall
- Incomplete or Missing SQL Statements or Network Traffic in Oracle DBSecCentral Reports
- Agent Activation Request Returns ‘host is not registered’ Error
- Unable to Deploy Agent on the Secondary Audit Vault Server
- ‘java -jar agent.jar’ Failed on Windows Machine
- Unable to Install the Agent or Generate the agent.jar File
- Unable to Un-install the Oracle Audit Vault Agent Windows Service
- Access Denied Error While Installing Agent as a Windows Service
- Unable to Start the Agent Through the Services Applet on the Control Panel
- Error When Starting the Agent
- Alerts on Oracle Database Targets Are Not Triggered for Extended Periods of Time
- Error When Creating an Audit Policy
- Connection Problems When Using Oracle Database Firewall Monitoring and Blocking
- Audit Trail Does Not Start
- Cannot See Data for Targets
- Problems Pairing Oracle Database Firewall and Oracle Audit Vault Server
- User Names Do Not Appear on Database Firewall Reports
- Alerts Are Not Generated
- Problems Retrieving or Provisioning Audit Settings on Oracle Target
- Operation Failed Message Appears When Attempting to Enable Oracle Database Security Central Policies
- Out of Memory Error Message During Restore
- JAVA.IO.IOEXCEPTION Error
- Failed to Start ASM Instance Error
- Internal Capacity Exceeded Messages Seen in the /var/log/messages file
- First Archive Or Retrieve Job After Upgrade
- Audit Vault Agent Installation Fails After HA Pairing Or Separation
- Error in Restoring Files
- DB2 Collector Fails Due to Source Version NULL Errors
- DB2 Collector Fails Due to Database Connection or Permission Issues
- ORA-12660 Error While Registering Target
- Audit Trail Performance Issues Occur After Audit Vault Server Upgrade
- Failures Due to Dropping Users
- Failure of Agent Automatic Upgrades
- Some Services May Not Start After Backup
- Data Overflow Issues in the Oracle Audit Vault UI
- Oracle Audit Vault Agent is Unreachable and the Transaction Log Audit Trail is Frozen in Starting Status
- Scheduled PDF or XLS Reports Result in a Hung State
- Pending Reports Remain in Scheduled Status
- Error OAV-47409 While Managing Archive Locations
- Error OAV-47402 While Defining Archive Locations Using NFS Mount Point
- Audit Trail Stopped After Relocating Windows Event Log Files
- Missing or Incomplete Client Information in Oracle Database Firewall Logs
- Issues with Retrieving Session Information Through Clients Connecting to Microsoft SQL Server
- Performance Issues Due to High Memory Usage
- httpd Crash Issue on Database Firewall
- Issue with Retrieval of Return Row Count
- Unable to Log in to the Oracle Oracle Database Security Central Appliance through SSH
- Error When Changing IP Address of Management Interface
- Transaction Log Audit Trail Stops Due to an Error While Parsing XML File Containing Emoji
- Unable to Find the FIPS Status for Database Firewall Instance
- Unable to Modify the Database Firewall FIPS Mode Through Oracle Database Security Central Console
- The FIPS Status on Both the Database Firewall Instances is Different
- After Restarting Secondary Audit Vault Server, the Primary Instance Fails to Switchover
- Incorrect Syntax Near Connectivity Entry in Audit Logs
- Certificate Regenerate Failure Error
- User Entitlement, Audit Policy, or Firewall Policy Job Stuck in Running State
- Displaying Job Status Takes Lot of Time in the Oracle Database Security Central Console
- Microsoft SQL Server Database Audit Trails are in Stopped State After Upgrading Java
- Issue in Language Setting of the Audit Vault Agent
- Unable to Create a Database Firewall Monitoring Point
- Issue with Configuring or Managing Oracle DBSecCentral through Oracle Enterprise Manager Cloud Control
- Unable to Connect to Audit Vault Server through Console or SSH
- Audit Vault Agent Fails with the ORA-01745 Error
- Oracle Directory or Table Audit Trail Stops with Error PLS-00201
- Error with Potential Insecure Path
- Error “ORA-28000 the Account Is Locked” After Changing the Admin User Password
- Error OAV-47112 When Trying to Delete an Existing Archive Location
- Transaction Log Audit Trail Stops Due to XML Parsing Error
- “-bash: permission denied” Error When Trying to Run Custom Backup Script from /home/oracle
- Issues Deleting Target Database With Audit Trail Still Running
- Deleting Audit Records Requires Applying Retention Period to Purge Records
- Unable to Mount NFS on New Oracle Database Security Central 20.3 Server
- Alert Email Notifications Are Not Received from Oracle Oracle Database Security Central Server
- Audit Vault Agent is Stuck in Starting State: Error OAV-46573
- SSH Becomes Disabled After Enabling FIPS Mode
- Audit Vault Agent Is Not Reachable from the Oracle Database Security Central Console
- Proxy Error When Opening Oracle Database Security Central Console in Web Browser
- Prevent a Terminal Login Session from Expiring When Connecting to an Audit Vault Server or a Database Firewall Server
- Microsoft SQL Server Database Audit Trails Are Unreachable
- Database Firewall Error ODF-10507: TCP Session Re-use
- Automate Archivelog Deletion in the Audit Vault Server Repository By Using the oracle User
- OAV-46511: Missing Plug-in for Trail at Agent on Host
- Initiate Pairing for High Availability Fails with OAV-46599: Internal Error
- Archive Error OAV-46599 and Internal Error ORA-14400: Partition Key Not Mapped
- SYSLOG Forwarding for Alerts Isn’t Working
- SYSLOG Forwarding to SIEM Isn’t Working
- Oracle Oracle Database Security Central Reports For Oracle Database Shows UNKNOWN For Session Info If Native Network Encryption Is Enabled On the Database
- Error: Kernel Out of Memory
- Increasing the Logical Volume Capacity for a File System
- Can’t Install Host Monitor with Error: Failed to Generate Executables for Host Monitor
- Installing the Oracle Enterprise Manager Management Agent for Oracle Oracle Database Security Central Fails with an Unzip Not Found Error
- Audit Trail Error: Unable to Connect to Target to Get Timezone Offset
- Diagnostic Report: Checking for Unknown Keys in /usr/local/dbfw/etc/dbfw.conf
- Agent IO Error: Network Adapter Can’t Establish Connection
- Error ORA-01403 No Data Found When Adding a Database Firewall Instance to a Target
- The Order of IP Addresses Changes After Setting Up DNS Servers
- NTP Is Unreachable on the Audit Vault Server
- Database Firewall Status Is Running but the Status Is Down on the Oracle Database Security Central Console
- Network Audit Trail Is Not Collecting Audit Data When Using the Host Monitor Agent
- Internal Error When Deploying the Audit Vault Agent
- Agent Host Is Not Registered
- A Database Firewall Policy Is Not Blocking Statements Correctly
- Having Automatic Archiving Enabled Is Giving OAV-47116 Error
- Network Trail Fails To Be Started Due To Insufficient Permissions Error
- How To Start an Audit Trail for Audit Trail Type DIRECTORY if the Database is Down
- After Setting the “SSH Acess” Setting, the SSH Connections are Dropped
- Oracle Database Security Central Directory Audit Trail Stays Up Collecting Audit Data Even When Target Database Is Shutdown
- ODF-10717 Is Logged In /var/log/messages File During The Starting Up of Database Firewall
- Error: Net::ReadTimeout occurred when executing Setup_ha.rb –disable_failover
- Processes Still Run After Stopping Audit Trails
- Loss of Bonding Between Network Interface Cards Upon Creation of Proxy Port
- Significant Time Delay in Captured Traffic by the Database Firewall For Reporting
- ODF-10719 Error Logged In Messages File After Starting Database Firewall
- “Server Error 500” on Oracle DBSecCentral Server after Setting Network Time Protocol (NTP)
- Audit Vault Agent Logs Report IO Error: The Network Adapter Could Not Establish Connection Due To Inactive Database Listener
- Authentication Processing Error When Logging in Due to Excessive Group String Length in Active Directory
- Discrepancies When Registering a Target Using Internet Explorer as the Browser
- Datafiles Don’t Change to Read Only Mode After Entering Archive Period
- Datafiles Don’t Change to Read Only Mode After Entering Archive Period
- OAV-46599 Internal Error: The Data Guard Observer Is Not Present When Performing Manual Switchover of Audit Vault Server
- Mail Notification Fails When Mailing Server is Configured with TLS/SSL
- DBSecCentral Agent Deployment Failure: Unable to Get Connection from Datasource
- Audit Vault Agent Installation Fails Due To File System Permissions
- DBSecCentral Agent Deployment Fails on Target Host with RAC DB Due to Incorrect IP Address Registration
- Host Monitoring Agent Installation Fails With Error About Inability to Retrieve Agent Details
- Audit Vault Agent Fails to Start from Windows Service
- DBSecCentral Agent Management after OS Upgrade
- Starting a Monitoring Point Causes Error OAV-46649
- Database Firewall Not Capturing in DAM Mode
- How to Use Linux to Send E-mails From a DBSecCentral Appliance
- Capture Bind Variables When Running the Database Firewall in DAM Mode
- Audit Vault Agent Configuration for a Table Audit Trail in a RAC Environment
- Database Firewall Certificate Validation Failed
- Configuring ERSPAN for SQL Traffic Auditing in Monitoring (Out of Band) Mode
- Recovery Disk Group is Getting Full with Archive Logs
- Cannot View the Updated Maintenance Job Schedule After Making Changes
- Oracle DBSecCentral Does Not Failover When Primary Server Is Down
- Executing ‘AVBACKUP BACKUP’ Command Fails
- Error OAV-47411 “Export Path” Does Not Exist on Remote File System
- Error OAV-47487: Uploading a Certificate to DBSecCentral Fails
- Troubleshooting Server Error 500 in DBSecCentral
- User Entitlement Retrieval Job Fails After Twelve Hours
- Unable to Drop Audit Trail from Unreachable Host
- Error OAV-47746: Sensitive Objects Data Upload Fails
- Status “Certificate Validation Failed” Error Shown in Audit Vault Server GUI
- OAV-47804: Invalid Credentials for User While Registering AD With DBSecCentral
- “Check Health of Audit Vault Server” Is Seen as Failed in the Job Status
- Agent Fails To Restart Automatically in Oracle DBSecCentral 20.9
- All Activity Scheduled Reports Fail with “Unknown Report Type” Error
- Multiple Network Interface Cards
- About Multiple Network Interface Cards
- Enabling SSH on a Secondary Network Interface Card
- Enabling Agent Connectivity on a Secondary NIC for Audit Vault Server
- Enabling the Agent for High Availability Connection on a Secondary NIC for Audit Vault Server
- Bonding of Network Interface Cards
- Configuring Routing on Secondary Network Interface Cards
- Changing a New or Secondary NIC to the Management NIC
- Configuring Quick JSON Target Type to Collect Audit Data from MongoDB
- Audit Vault Agent Auto Start Configuration
- Configuring Agent Auto Start on Host Machine With OL7 and OL8
- Configuring Agent Auto Start on Host Machine With OL6
- Configuring Agent Auto Start on Host Machine With Windows x64
- Configuring Agent Auto Start on Host Machine With Solaris [SPARC/x64]
- Configuring Agent Auto Start on Host Machine With IBM AIX
- Adding User Content To System Configuration Files
- AVCLI Commands Reference