Cybersecurity Forum

This forum is for all security enthusiasts to discuss Fortinet's latest & evolving technologies and to connect & network with peers in the cybersecurity hemisphere. Share and learn on a broad range of topics like best practices, use cases, integrations and more. For support specific questions/resources, please visit the Support Forum or the Knowledge Base.

isuru
New Contributor II

FortiSIEM - Oracle Audit Vault Support

Hi,

I would like to know whether, FortiSIEM supports Oracle Audit Vault to collect Oracle DB audit logs instead of enabling audit trails.

------------------------------
Cheers,
Isuru
------------------------------
Cheers,
Isuru Malawige
Cheers,Isuru Malawige
2 REPLIES 2
isuru
New Contributor II

Hi,

According to the Oracle Audit Vault Administration guide (https://docs.oracle.com/cd/E69292_01/doc.122/e41705.pdf), it is possible to enable syslog forwarding for the audit vault alerts. Will this be sufficient for Oracle DB auditing instead of the traditional audit trails mentioned in the FortiSIEM external systems integration guide.

MessageImages_b86ab22d95834b1bb2edce76b353d970.png

------------------------------
Cheers,
Isuru
------------------------------
Cheers,
Isuru Malawige
Cheers,Isuru Malawige
FSM_FTNT

Hi Isuru,

It is not supported out-the-box with FortiSIEM 6.2.1. Have you got sample events exported from FortiSIEM in CSV format that you can provided?

------------------------------
Daniel
FortiSIEM Product Manager
------------------------------