Introducing Omega Core Audit NT Agent:
This is the first public release of Omega Core Audit NT Agent!
Omega Core Audit NT Agent is a continuous audit monitoring tool that is specifically designed for Oracle Databases running on Windows NT systems. Omega Core Audit NT Agent is an out-of-box and software-only solution. It is a Windows application deployed in the form of a Windows NT Service that will:
* Monitor Oracle databases audit trail records written as Windows Event log records.
* Extract Oracle database Administrative and Standard Audit fields from the NT Event message.
* Deliver audit trail records in a unified audit trail format to the Splunk SIEM for tamper-proof storage,
reporting, alerting and analyses.
The Omega Core Audit NT Agent is an OS based solution and as such requires no install and no connection to the monitored Oracle databases. It contains no record storage/repository of its own. It has been built to deliver the Oracle database audit trail records to an available external log storage system.
Splunk SIEM is the first one of such systems to be supported in this initial version. More SIEMs and Central Log Collection systems will be supported in next releases.
Features:
Prerequisites and Compatibility:
Oracle Database All Oracle database versions and releases from 11g R1 to 12c R2 are supported.
All Editions – Standard (One) and Enterprise are supported.
Operating System All Windows NT systems supported by the Oracle database flaws above.
External Log System Splunk Enterprise and Free edition version 6 and above.
The Omega Core Audit NT Agent Edition is free to use in live, production, commercial and test systems!
DATAPLUS is committed to its further development and improvement, as this work is a courtesy of DATAPLUS
to all Oracle database security related professionals!