All Apps and Add-ons

How can Splunk read logs from database (MS SQL and Oracle)?

humidisplunk
New Member
 
Tags (4)
0 Karma

pmdba
Builder

A basic tutorial on configuring Splunk monitoring for Oracle can be found here: https://apps.splunk.com/app/1538.

0 Karma

treinke
Builder

Are you talking about C2 audits or getting data out of the databases in to Splunk? Can you provide a little more detail about your request?

There are no answer without questions
0 Karma

ppablo
Retired

As Anthony Reinke suggested, please provide much more details in your posts to get more complete answers in this forum. Otherwise, users have to keep asking you more questions to get more details rather than giving you straightforward answers.

0 Karma

saurabh_tek
Communicator

@ppablo - i need database logs like changes done on the tables, who accessed the database etc...
(not the data inside DB), i am using SQL addon but that is not collecting these logs

i have seen on SQL management suite that they are generating. can you suggest how can i start collecting them into splunk ?

0 Karma

mzorzi
Splunk Employee
Splunk Employee

If you mean the log files in the filesystems, you can install a forwarder and threat it as a normal file.
If instead these logs are inside the database, you should use the dbx app.

0 Karma

ppablo
Retired

Information on the Splunk DB Connect app recommended by @mzorzi can be found here https://apps.splunk.com/app/958/

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...