Creating and Managing SQL Cluster Sets

Learn how to create and manage SQL cluster sets in Database Firewall policy.

A SQL cluster set is a group of SQL clusters. SQL cluster is a group of SQL statements created automatically by Database Firewall which are similar to each other, from the network traffic.

You can create a new SQL cluster set as well as delete it. This deletes the definition only and does not remove the network data captured by the Database Firewall.

To create a SQL cluster set:

  1. Log in to the Oracle Database Security Central console as auditor.

  2. Select Policies.

  3. Select the Database Firewall Policies in the left navigation menu.

  4. Select the name of the specific policy. The details of the policy are displayed in the main page.

  5. Select Sets/Profiles in the top right corner. This page lists the existing sets that are already defined for the specific policy.

  6. Select SQL Custer Sets sub

  7. To add a new SQL cluster set, select Add. The Add SQL Cluster Set dialog is displayed.

  8. To get the list of SQL clusters, choose the filter options in the following fields:

    1. Target

    2. Show cluster for

  9. Select Go. It displays all the SQL clusters depending on the selection.

  10. Select the specific SQL clusters. To know the SQL statements associated with the cluster refer to the sample SQL from cluster column values.

  11. Enter the Name and optionally Description.

  12. Select Save. A new SQL cluster set is added and is listed in the Sets/Profiles page. More such sets can be added by following the above steps.

To add or delete the SQL cluster from a given set:

  1. Select SQL Cluster Sets sub

  2. From the report choose the specific SQL cluster set, the details of the cluster set are displayed.

  3. Choose Add and follow the procedure to add new clusters to an existing set.

  4. From the same dialog, choose Delete option to delete one or more clusters from the set.

  5. Select Save.