Reimage Oracle Database Firewall and Restore from Audit Vault Server
Use this procedure to reimage the Oracle Database Firewall appliance and restore the configuration from the Oracle Database Security Central console.
-
Reinstall Database Firewall.
-
Configure the Database Firewall instance.
Note:
-
Keep the same number of Network Interface Cards that were available in the previous instance and in the same order. However, there is no need to configure them manually except the Management Interface which is configured during installation. This task is accomplished by the reset Firewall operation.
-
Similarly, the proxy ports need not be created manually. This task is accomplished by the reset Firewall operation.
-
In case the Network Interface Cards or the proxy ports are created manually using the Oracle Database Security Central console, then the reset Firewall operation may not succeed and the state of the Firewall instance may not be the same as before.
-
Do not run
CONFIG-NICandCONFIG-PROXYcommands to configure NIC and proxy ports.
-
-
Log in to Oracle Database Security Central Console as an
administrator. -
Select on Database Firewalls. A list of Database Firewall instances configured are displayed on the main page.
-
The Status of the newly installed Database Firewall instance is
Certificate Validation Failedwith a red indicator. Select the specific Database Firewall instance. The details of the specific Database Firewall instance are displayed on the main page. -
Install the AVS certificate on the new Database Firewall.
For more information see Specifying the Audit Vault Server Certificate and IP Address.
-
Select Update Certificate button, and wait for the page to load. The status of the Database Firewall instance is
Upor green. -
Select Reset Firewall button. Confirm the operation by selecting OK in the dialog.
-
Check the status of this operation by navigating to the Jobs dialog. For this, select Settings, then select System in the left navigation menu. Select Jobs under the Monitoring section.
-
The Jobs dialog contains a list of ongoing jobs. The Job Type is
Reset Firewall. Select Job Details. The Job Status Details dialog contains current status. If the job has failed, then an appropriate message is displayed. If the job is successful, then it displays the completion time. -
Check the overall health status of the Database Firewall instance. Navigate back to the Database Firewalls, and then select the specific instance. Under Diagnostics, select Health Indicators.
-
Expand the Certificates block. There is a message pertaining to certificate validation failure in the list, and take appropriate action.
-
Expand the Database Firewall Monitoring section and ensure everything is green. Select Close in the bottom right corner of the dialog.