3. Configure Database Security Central Server
Now that the software bits are in place, access the post install configuration page from the Security Central console:
-
From a browser, open the Security Central console using the server IP address:
https://<Security_Central_Server_IP_address> -
When prompted, enter the root password set during installation.
-
Select Login.
The post-install configuration page appears which would now walk you through the next steps as follows.
3.1 Set Up Super Administrator and Super Auditor Users
-
In the User Setup section, enter the Super Administrator username. This user manages system configuration and administrative tasks.
-
Enter and confirm the Super Administrator password.
-
Select Validate Username.
-
Enter the Super Auditor username. This user reviews and remediates risks with users, sensitive data access and configuration.
-
Enter and confirm the Super Auditor password.
-
Select Validate Username.
3.2 Set Up Encryption Keystore Password
After setting up super administrator and super auditor users, setup encryption keystore on the same page.
The Security Central Server’s repository is automatically encrypted using Oracle Database Transparent Data Encryption (TDE). The DBSecCentral Database encryption keystore password is required to reset the TDE master key. In theDBSecCentral Database encryption keystore encryption section, enter and confirm the keystore password. Store this password securely because it protects the DBSecCentral Database encryption keystore.
3.3 Configure Domain Namer Server Details
This is the last section on the post install screen.
To set the DNS servers:
-
Enter the IP addresses of up to three DNS servers on the network in the Server 1, Server 2, and Server 3 fields. You can leave the fields blank if there are fewer or no DNS servers.
-
Select Save.
This completes post install configuration step.
For next set of configuration steps, log as administrator in the DBSecCentral console.
3.5 Configure System Time
Time synchronization is important to co-relate various risks.
-
Log in to the DBSecCentral Console as an administrator.
-
In the DBSecCentral console, navigate to Settings, System, Configuration, System Settings, Time & Keyboard, System Time, then Use NTP.
-
Configure NTP servers Server 1, Server 2, and Server 3 fields for time synchronization. Leave the fields blank if there are fewer or no NTP servers.
Note: It is recommended to configure NTP for both the DBSecCentral Audit Vault Server and all target database servers so timestamps remain consistent.
3.6 Configure for High Availability
Oracle Real Application Clusters (Oracle RAC) is a “shared-everything” database architecture in which multiple instances run on different servers (nodes) while accessing a single set of database files on shared storage. This design provides high availability, horizontal scalability, and fault tolerance for mission-critical applications. Oracle DBSecCentral uses Oracle RAC to support high availability.
Refer to Chapter “High Availability in Oracle Database Security Central” of the administrator guides for detailed step-by-step configuration.
Note:
-
Oracle recommends using Oracle Database Security Central Server (Audit Vault Server) resilient pair deployment for Data Center and Disaster Recovery (DC and DR) use case.
-
For Compliance360 use cases—such as auditing, SQL monitoring, and policy creation—a few additional post-installation configuration tasks are required. Refer to Audit Vault Server Post-Installation Tasks for more information.