Getting Data In

Splunk for SQL App (i.e. database activity monitoring)

maverick
Splunk Employee
Splunk Employee

Is Splunk planning to create and/or provide a general umbrella-ish Splunk for SQL App (or a solution suite) for monitoring the various databases in a typical IT environment, the accesses being made to them, the activities conducted, queries being executed, etc, regardless of it being MSSQL, Oracle, DB2, mysql, or other, or ALL of these simultaneously?

If so, when can we expect that app to be available?

1 Solution

erik_extrahop
Explorer

ExtraHop now has a Splunkbase app for database monitoring. Databases supported are Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
http://splunk-base.splunk.com/apps/53757/extrahop.
Disclaimer: the Splunk App does require the ExtraHop APM platform to be installed.

View solution in original post

0 Karma

halr9000
Motivator

Marking this question as answered for posterity.

0 Karma

halr9000
Motivator

Here are two more relevant apps:

erik_extrahop
Explorer

ExtraHop now has a Splunkbase app for database monitoring. Databases supported are Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
http://splunk-base.splunk.com/apps/53757/extrahop.
Disclaimer: the Splunk App does require the ExtraHop APM platform to be installed.

0 Karma

carasso
Splunk Employee
Splunk Employee

Erik -- a search of "sql" on apps.splunk.com didn't return your app. Users might find your app better if you throw in a few relevant keywords into your apps description: Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.

0 Karma

bvamos
Explorer

Hi,

I've just uploaded a new App (Splunk for Oracle Audit Trails) what can parse and analyze Oracle Audit Trails sent via syslog. In the near future it will work with AUD$ table or any other audit view. This can be the one of the components of an SQL Application Suite.
Unfortunately this App is not yet available in SplunkBase but hopefully will be soon. Check out my profile later...

0 Karma

carasso
Splunk Employee
Splunk Employee

Any updates? it's been 2.5 years. thx

0 Karma

bvamos
Explorer

Splunk for Oracle Audit Trails is available. Download from: http://splunk-base.splunk.com/apps/36943/oracle-audit-trail

0 Karma
Get Updates on the Splunk Community!

More Ways To Control Your Costs With Archived Metrics | Register for Tech Talk

Tuesday, May 14, 2024  |  11AM PT / 2PM ET Register to Attend Join us for this Tech Talk and learn how to ...

.conf24 | Personalize your .conf experience with Learning Paths!

Personalize your .conf24 Experience Learning paths allow you to level up your skill sets and dive deeper ...

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...