Is Splunk planning to create and/or provide a general umbrella-ish Splunk for SQL App (or a solution suite) for monitoring the various databases in a typical IT environment, the accesses being made to them, the activities conducted, queries being executed, etc, regardless of it being MSSQL, Oracle, DB2, mysql, or other, or ALL of these simultaneously?
If so, when can we expect that app to be available?
ExtraHop now has a Splunkbase app for database monitoring. Databases supported are Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
http://splunk-base.splunk.com/apps/53757/extrahop.
Disclaimer: the Splunk App does require the ExtraHop APM platform to be installed.
Marking this question as answered for posterity.
Here are two more relevant apps:
ExtraHop now has a Splunkbase app for database monitoring. Databases supported are Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
http://splunk-base.splunk.com/apps/53757/extrahop.
Disclaimer: the Splunk App does require the ExtraHop APM platform to be installed.
Erik -- a search of "sql" on apps.splunk.com didn't return your app. Users might find your app better if you throw in a few relevant keywords into your apps description: Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
Hi,
I've just uploaded a new App (Splunk for Oracle Audit Trails) what can parse and analyze Oracle Audit Trails sent via syslog. In the near future it will work with AUD$ table or any other audit view. This can be the one of the components of an SQL Application Suite.
Unfortunately this App is not yet available in SplunkBase but hopefully will be soon. Check out my profile later...
Any updates? it's been 2.5 years. thx
Splunk for Oracle Audit Trails is available. Download from: http://splunk-base.splunk.com/apps/36943/oracle-audit-trail