Getting Data In

Splunk for SQL App (i.e. database activity monitoring)

maverick
Splunk Employee
Splunk Employee

Is Splunk planning to create and/or provide a general umbrella-ish Splunk for SQL App (or a solution suite) for monitoring the various databases in a typical IT environment, the accesses being made to them, the activities conducted, queries being executed, etc, regardless of it being MSSQL, Oracle, DB2, mysql, or other, or ALL of these simultaneously?

If so, when can we expect that app to be available?

1 Solution

erik_extrahop
Explorer

ExtraHop now has a Splunkbase app for database monitoring. Databases supported are Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
http://splunk-base.splunk.com/apps/53757/extrahop.
Disclaimer: the Splunk App does require the ExtraHop APM platform to be installed.

View solution in original post

0 Karma

halr9000
Motivator

Marking this question as answered for posterity.

0 Karma

halr9000
Motivator

Here are two more relevant apps:

erik_extrahop
Explorer

ExtraHop now has a Splunkbase app for database monitoring. Databases supported are Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
http://splunk-base.splunk.com/apps/53757/extrahop.
Disclaimer: the Splunk App does require the ExtraHop APM platform to be installed.

0 Karma

carasso
Splunk Employee
Splunk Employee

Erik -- a search of "sql" on apps.splunk.com didn't return your app. Users might find your app better if you throw in a few relevant keywords into your apps description: Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.

0 Karma

bvamos
Explorer

Hi,

I've just uploaded a new App (Splunk for Oracle Audit Trails) what can parse and analyze Oracle Audit Trails sent via syslog. In the near future it will work with AUD$ table or any other audit view. This can be the one of the components of an SQL Application Suite.
Unfortunately this App is not yet available in SplunkBase but hopefully will be soon. Check out my profile later...

0 Karma

carasso
Splunk Employee
Splunk Employee

Any updates? it's been 2.5 years. thx

0 Karma

bvamos
Explorer

Splunk for Oracle Audit Trails is available. Download from: http://splunk-base.splunk.com/apps/36943/oracle-audit-trail

0 Karma
Get Updates on the Splunk Community!

Security Professional: Sharpen Your Defenses with These .conf25 Sessions

Sooooooooooo, guess what. .conf25 is almost here, and if you're on the Security Learning Path, this is your ...

First Steps with Splunk SOAR

Our first step was to gather a list of the playbooks we wanted and to sort them by priority.  Once this list ...

How To Build a Self-Service Observability Practice with Splunk Observability Cloud

If you’ve read our previous post on self-service observability, you already know what it is and why it ...