Remote Audit Log Forwarding for Oracle Linux DB Systems
Hi Team,
We have implemented auditing for commands executed by users after they switch to the root account from their respective login IDs. While this provides accountability, we cannot completely remove root access for operational reasons. Thanks to Masi and Sarma for helping us in this regard.
Has anyone implemented audisp-remote or a SIEM-based solution in OCI DB Systems for this purpose?Does it incur any additional costs?
Our objective is to make any tampering detectable and to ensure that audit records already sent off-host remain preserved. DBAs do not have access to the Object Storage for log retention. We are using OEL 8.9 operating system.
Tagged:
0