Unified Audit Policy Replacement for AUDIT_SYS_OPERATIONS
I really hope I am missing something, but it seems to me that the init parameter AUDIT_SYS_OPERATIONS no longer has any function once the Unified Audit Trail is fully enabled. See the Note section for the source of my confusion.
My question is this:
How would you craft a Unified Audit Policy to provide the same level of traceability as AUDIT_SYS_OPERATIONS?
It is my understanding that the init parameter pushed the text of every statement issued by SYSDBA and SYSOPER users to the hosting OS message/event logs.