Oracle Audit Content Pack for Graylog visualizes Oracle unified audit events in Graylog. These events are delivered to Graylog from Oracle DB, via Oracle Audit Add-On for Graylog, installed on the Oracle DB.
Oracle-side requirement: https://github.com/akaraulli/Oracle_Audit_Add_on_for_Graylog
Components:
- GELF TCP Input
Oracle Audit TCP Input - will ingest records pushed by Oracle Audit Add-On for Graylog
- Stream
Oracle Audit - data from Oracle Audit Add-On for Graylog deployments
- Dashboards
Oracle Audit Events Summary
Oracle Audit Events Records
- Saved-Searches
named by respective SEO (Extra Search Options) fields - as described in Oracle Audit Add-On for Graylog User_Guide
Oracle Audit Events Summary dashboard