All Apps and Add-ons

Splunk to intergrate with Oracle DB logs

shyampsk
New Member

Hi,
I am a newbie to Splunk. My requirement is to generate reports against Database on a daily basis using Splunk. We need to do this by generating logs on DB in every predefined interval and forward them to splunk. To achieve this,
1. what forwarder we need to use?
2. How to configure it ?
3. Can splunk itself fetch logs from DB?
4. How much logs data we can store in splunk?
5. Can we monitor a directory for logs and use them in splunk instead of using forwarder? If it is so how to configure it?

Also let me know what options are available to achieve this.

Thanks in advance.

Regards,
Shyam

Tags (1)
0 Karma

pmdba
Builder

For a starting tutorial on monitoring Oracle with Splunk, try Log File Analysis for Oracle 11g. It describes most of the things you are asking about. If your Splunk installation will not be located on the same server as your Oracle database and SQL commands through DB Connect will not work to get the data you need, then you will also need to look at using the Universal Forwarder.

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...