Getting Data In

Splunk for SQL App (i.e. database activity monitoring)

maverick
Splunk Employee
Splunk Employee

Is Splunk planning to create and/or provide a general umbrella-ish Splunk for SQL App (or a solution suite) for monitoring the various databases in a typical IT environment, the accesses being made to them, the activities conducted, queries being executed, etc, regardless of it being MSSQL, Oracle, DB2, mysql, or other, or ALL of these simultaneously?

If so, when can we expect that app to be available?

1 Solution

erik_extrahop
Explorer

ExtraHop now has a Splunkbase app for database monitoring. Databases supported are Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
http://splunk-base.splunk.com/apps/53757/extrahop.
Disclaimer: the Splunk App does require the ExtraHop APM platform to be installed.

View solution in original post

0 Karma

halr9000
Motivator

Marking this question as answered for posterity.

0 Karma

halr9000
Motivator

Here are two more relevant apps:

erik_extrahop
Explorer

ExtraHop now has a Splunkbase app for database monitoring. Databases supported are Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
http://splunk-base.splunk.com/apps/53757/extrahop.
Disclaimer: the Splunk App does require the ExtraHop APM platform to be installed.

0 Karma

carasso
Splunk Employee
Splunk Employee

Erik -- a search of "sql" on apps.splunk.com didn't return your app. Users might find your app better if you throw in a few relevant keywords into your apps description: Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.

0 Karma

bvamos
Explorer

Hi,

I've just uploaded a new App (Splunk for Oracle Audit Trails) what can parse and analyze Oracle Audit Trails sent via syslog. In the near future it will work with AUD$ table or any other audit view. This can be the one of the components of an SQL Application Suite.
Unfortunately this App is not yet available in SplunkBase but hopefully will be soon. Check out my profile later...

0 Karma

carasso
Splunk Employee
Splunk Employee

Any updates? it's been 2.5 years. thx

0 Karma

bvamos
Explorer

Splunk for Oracle Audit Trails is available. Download from: http://splunk-base.splunk.com/apps/36943/oracle-audit-trail

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...