Getting Data In

Splunk for SQL App (i.e. database activity monitoring)

maverick
Splunk Employee
Splunk Employee

Is Splunk planning to create and/or provide a general umbrella-ish Splunk for SQL App (or a solution suite) for monitoring the various databases in a typical IT environment, the accesses being made to them, the activities conducted, queries being executed, etc, regardless of it being MSSQL, Oracle, DB2, mysql, or other, or ALL of these simultaneously?

If so, when can we expect that app to be available?

1 Solution

erik_extrahop
Explorer

ExtraHop now has a Splunkbase app for database monitoring. Databases supported are Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
http://splunk-base.splunk.com/apps/53757/extrahop.
Disclaimer: the Splunk App does require the ExtraHop APM platform to be installed.

View solution in original post

0 Karma

halr9000
Motivator

Marking this question as answered for posterity.

0 Karma

halr9000
Motivator

Here are two more relevant apps:

erik_extrahop
Explorer

ExtraHop now has a Splunkbase app for database monitoring. Databases supported are Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.
http://splunk-base.splunk.com/apps/53757/extrahop.
Disclaimer: the Splunk App does require the ExtraHop APM platform to be installed.

0 Karma

carasso
Splunk Employee
Splunk Employee

Erik -- a search of "sql" on apps.splunk.com didn't return your app. Users might find your app better if you throw in a few relevant keywords into your apps description: Oracle, Microsoft SQL, Informix, DB2, Sybase and Sybase IQ, Postgres, and MySql.

0 Karma

bvamos
Explorer

Hi,

I've just uploaded a new App (Splunk for Oracle Audit Trails) what can parse and analyze Oracle Audit Trails sent via syslog. In the near future it will work with AUD$ table or any other audit view. This can be the one of the components of an SQL Application Suite.
Unfortunately this App is not yet available in SplunkBase but hopefully will be soon. Check out my profile later...

0 Karma

carasso
Splunk Employee
Splunk Employee

Any updates? it's been 2.5 years. thx

0 Karma

bvamos
Explorer

Splunk for Oracle Audit Trails is available. Download from: http://splunk-base.splunk.com/apps/36943/oracle-audit-trail

0 Karma
Get Updates on the Splunk Community!

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...

What’s New in Splunk Observability Cloud: January Feature Highlights & Deep Dives

Splunk Observability Cloud continues to evolve, empowering engineering and operations teams with advanced ...