Configuring DSMs
282
O
RACLE
For more information about your Oracle Audit Record, see your vendor
documentation.
Oracle BEA
WebLogic
The Oracle BEA WebLogic DSM allows SIEM to retrieve archived server logs and
audit logs from any remote host, such as your Oracle BEA WebLogic server. SIEM
uses the log file protocol to retrieve events from your Oracle BEA WebLogic server
and provide information on application events that occur in your domain or on a
single server.
To integrate Oracle BEA WebLogic events, you must:
1
Enable auditing on your Oracle BEA WebLogic server. For more information, see
Enabling Event Logs on Oracle BEA WebLogic
.
2
Configure domain logging on your Oracle BEA WebLogic server. For more
information, see
Configuring Domain Logging
.
3
Configure application logging on your Oracle BEA WebLogic server.
Configuring
Application Logging
.
4
Configure an audit provider for Oracle BEA WebLogic. For more information, see
Configuring an Audit Provider
.
5
Configure SIEM to pull log files from Oracle BEA WebLogic. For more information,
see
Pulling Data Using the Log File Protocol
.
Enabling Event Logs
on Oracle BEA
WebLogic
By default, Oracle BEA WebLogic does not enable event logging. To enable event
logging on your Oracle WebLogic console:
Step 1
Log in to your Oracle WebLogic console user interface.
Step 2
Select
Domain > Configuration > General
.
Step 3
Click
Advanced
.
Step 4
From the
Configuration Audit Type
drop-down list box, select
Change Log and
Audit
.
Step 5
Click
Save
.
You are now ready to configure the collection of domain logs for Oracle BEA
WebLogic.
Configuring Domain
Logging
Oracle BEA WebLogic supports multiple instances. Event messages from
instances are collected in a single domain-wide log for the Oracle BEA WebLogic
server. To configure the log file for the domain:
Step 1
From your Oracle WebLogic console, select
Domain > Configuration > Logging
.
Step 2
From the
Log file name
parameter, type the directory path and file name for the
domain log. For example, OracleDomain.log.
Step 3
Optional. Configure any additional domain log file rotation parameters.
Содержание Security Information and Event Manager
Страница 1: ...Enterasys Security Information and Event Manager SIEM Configuring DSMs Release 7 7 0 P N 9034592 05...
Страница 2: ......
Страница 8: ......
Страница 20: ......
Страница 22: ......
Страница 24: ......
Страница 26: ......
Страница 32: ......
Страница 34: ......
Страница 36: ......
Страница 38: ......
Страница 44: ......
Страница 58: ......
Страница 90: ......
Страница 92: ......
Страница 94: ......
Страница 114: ......
Страница 116: ......
Страница 122: ......
Страница 124: ......
Страница 126: ...Configuring DSMs 110 FIREEYE...
Страница 128: ......
Страница 130: ......
Страница 132: ......
Страница 136: ......
Страница 140: ......
Страница 144: ......
Страница 172: ......
Страница 176: ...Configuring DSMs 160 ISC BIND...
Страница 180: ......
Страница 182: ......
Страница 184: ......
Страница 204: ......
Страница 224: ......
Страница 246: ......
Страница 250: ......
Страница 256: ......
Страница 260: ......
Страница 276: ......
Страница 282: ......
Страница 284: ......
Страница 306: ......
Страница 308: ......
Страница 318: ......
Страница 322: ......
Страница 324: ......
Страница 346: ......
Страница 356: ......
Страница 366: ......
Страница 384: ......
Страница 392: ......
Страница 394: ......
Страница 396: ......
Страница 398: ......
Страница 404: ......
Страница 426: ......