Splunk® Supported Add-ons

Splunk Add-on for Oracle Database

Download manual as PDF

Download topic as PDF

Configure Splunk DB Connect v3.1 inputs for the Splunk Add-on for Oracle Database

To gather inventory and performance data from your Oracle Database Server, the Splunk Add-on for Oracle Database leverages Splunk DB Connect. This topic presents the instructions for DB Connect version 3.1.

Set up the database connection

1. Download the JDBC driver for Oracle database from http://www.oracle.com/technetwork/database/enterprise-edition/jdbc-112010-090769.html.

2. Place the driver file called ojdbc*.jar in $SPLUNK_HOME/etc/apps/splunk_app_db_connect/drivers/ on the part of your Splunk Enterprise architecture performing the data collection.

3. Still on the part of your Splunk Enterprise architecture performing data collection, go to Splunk DB Connect in Splunk Web.

4. Create an identity for establishing a connection to a database. Make sure the DB user for this identity has access to Oracle auditing data.

Use the Splunk DB Connect GUI to create a database connection

To create a database connection to the Oracle Database Server using the Splunk DB Connect GUI:

Refer to the "Create and manage database connections" in the Splunk DB Connect manual for step-by-step instructions for using the GUI to set up a new database connection.

Configure the inputs using the Splunk DB Connect GUI

If you want to create Oracle database input, choose the template created for Splunk Add-on for Oracle Database under Template field of DB Connect. Be aware you need to set the timezone field as UTC if you create the oracle:audit:unified input.

Last modified on 01 May, 2018
PREVIOUS
Configure Splunk DB Connect v2.x inputs for the Splunk Add-on for Oracle Database
  NEXT
Troubleshoot the Splunk Add-on for Oracle Database

This documentation applies to the following versions of Splunk® Supported Add-ons: released


Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters