Wednesday, September 24, 2008

AUDIT_TRAIL

Property

Description

Parameter type

String

Syntax

AUDIT_TRAIL = { none | os | db | db_extended | xml | xml, extended }

Default value

db

Modifiable

No

Basic

No

AUDIT_TRAIL enables or disables database auditing.

Values:

· none

Disables database auditing.

· os

Enables database auditing and directs all audit records to the operating system's audit trail.

· db

Enables database auditing and directs all audit records to the database audit trail (the SYS.AUD$ table).

· db_extended

Enables database auditing and directs all audit records to the database audit trail (the SYS.AUD$ table). In addition, populates the SQLBIND and SQLTEXT CLOB columns of the SYS.AUD$ table.

· xml

Enables database auditing and writes all audit records to XML format OS files.

· xml, extended

Enables database auditing and prints all columns of the audit trail, including SqlText and SqlBind values.

You can use the SQL AUDIT statement to set auditing options regardless of the setting of this parameter.

Note:

1. The OS option is not supported on all platforms. When it is supported output is sent to the location specified by .

The values TRUE and FALSE are also supported for backward compatibility. TRUE is equivalent to DB. FALSE is equivalent to NONE.

2. Query for the current value of the parameter

select name, value, isdefault, isses_modifiable, issys_modifiable,

isinstance_modifiable, isdeprecated, description

from v$parameter where upper(name) = 'AUDIT_TRAIL';

NAME

VALUE

IS

DEFAULT

ISSES_

MODIFIABLE

ISSYS_

MODIFIABLE

ISINSTANCE_

MODIFIABLE

IS

DEPRECATED

DESCRIPTION

audit_trail

TRUE

FALSE

FALSE

FALSE

FALSE

FALSE

enable system auditing

Oracle initializatoin parameters

AUDIT_SYSLOG_LEVEL

Property

Description

Parameter type

String

Syntax

AUDIT_SYSLOG_LEVEL = 'facility_clause.priority_clause'

facility_clause::=

{ USER | LOCAL[0 | 1 | 2 | 3 | 4 | 5 | 6 | 7] | SYSLOG | DAEMON | KERN | MAIL | AUTH | LPR | NEWS | UUCP | CRON }

priority_clause::=

{ NOTICE | INFO | DEBUG | WARNING | ERR | CRIT | ALERT | EMERG }

Default value

There is no default value.

Modifiable

No

Basic

No

Examples

AUDIT_SYSLOG_LEVEL = 'KERN.EMERG';
 
AUDIT_SYSLOG_LEVEL = 'LOCAL1.WARNING';

AUDIT_SYSLOG_LEVEL allows SYS and standard OS audit records to be written to the system audit log using the SYSLOG utility.

If you use this parameter, it is best to assign a file corresponding to every combination of facility and priority (especially KERN.EMERG) in syslog.conf . Sometimes these are assigned to print to the console in the default syslog.conf file. This can become annoying and will be useless as audit logs. Also, if you use this parameter, it is best to set the maximum length of syslog messages in the system to 512 bytes.

If AUDIT_SYSLOG_LEVEL is set and SYS auditing is enabled (AUDIT_SYS_OPERATIONS = TRUE), then SYS audit records are written to the system audit log.If AUDIT_SYSLOG_LEVEL is set and standard audit records are being sent to the operating system (AUDIT_TRAIL = OS), then standard audit records are written to the system audit log.

Note:

1. See Oracle Database Security Guide for more information about configuring the syslog audit trail by using the AUDIT_SYSLOG_LEVEL parameter

2. Query for the current value of the parameter

select name, value, isdefault, isses_modifiable, issys_modifiable,

isinstance_modifiable, isdeprecated, description

from v$parameter where upper(name) = 'AUDIT_SYSLOG_LEVEL';

NAME

VALUE

IS

DEFAULT

ISSES_

MODIFIABLE

ISSYS_

MODIFIABLE

ISINSTANCE_

MODIFIABLE

IS

DEPRECATED

DESCRIPTION

audit_syslog_level

TRUE

FALSE

FALSE

FALSE

FALSE

Syslog facility and level

Oracle initializatoin parameters

AUDIT_SYS_OPERATIONS

Property

Description

Parameter type

Boolean

Default value

false

Modifiable

No

Range of values

true | false

Basic

No

AUDIT_SYS_OPERATIONS enables or disables the auditing of operations issued by user SYS, and users connecting with SYSDBA or SYSOPER privileges. The audit records are written to the operating system's audit trail. The audit records will be written in XML format if the AUDIT_TRAIL initialization parameter is set to XML.

On UNIX platforms, if the AUDIT_SYSLOG_LEVEL parameter has also been set, then it overrides the AUDIT_TRAIL parameter and SYS audit records are written to the system audit log using the SYSLOG utility.

Note:

1. Query for the current value of the parameter

select name, value, isdefault, isses_modifiable, issys_modifiable,

isinstance_modifiable, isdeprecated, description

from v$parameter where upper(name) = 'AUDIT_SYS_OPERATIONS';

NAME

VALUE

IS

DEFAULT

ISSES_

MODIFIABLE

ISSYS_

MODIFIABLE

ISINSTANCE_

MODIFIABLE

IS

DEPRECATED

DESCRIPTION

audit_sys_operations

FALSE

TRUE

FALSE

FALSE

FALSE

FALSE

enable sys auditing

Oracle initializatoin parameters

AUDIT_FILE_DEST


Property
Description
Parameter type
String
Syntax
AUDIT_FILE_DEST = 'directory'
Default value
The first default value is:
ORACLE_BASE/admin/ORACLE_SID/adump
The second default value, which is used if the first default value does not exist or is unusable, is:
ORACLE_HOME/rdbms/audit
Both of these default values are for Unix systems. Other platforms may have different defaults.
Modifiable
ALTER SYSTEM ... DEFERRED
Basic
No
AUDIT_FILE_DEST specifies the operating system directory into which the audit trail is written when the AUDIT_TRAIL initialization parameter is set to os, xml, or xml,extended. The audit records will be written in XML format if the AUDIT_TRAIL initialization parameter is set to XML. It is also the location to which mandatory auditing information is written and, if so specified by the AUDIT_SYS_OPERATIONS initialization parameter, audit records for user SYS.
Note:
1. If the audit directory is full or not writable you may get ORA-1031 and similar errors when trying to CONNECT INTERNAL or CONNECT / AS SYSDBA.

2. Query for the current value of the parameter
select name, value, isdefault, isses_modifiable, issys_modifiable,
isinstance_modifiable, isdeprecated, description
from v$parameter where upper(name) = 'AUDIT_FILE_DEST';
NAME
VALUE
IS
DEFAULT
ISSES_
MODIFIABLE
ISSYS_
MODIFIABLE
ISINSTANCE_
MODIFIABLE
IS
DEPRECATED
DESCRIPTION
audit_file_dest
/oracle/admin/mydb/adump
TRUE
FALSE
DEFERRED
TRUE
FALSE
Directory in which auditing files are to reside

Oracle initializatoin parameters


More Oracle DBA tips, please visit Oracle DBA Tips 

ASM_PREFERRED_READ_FAILURE_GROUPS

Property

Description

Parameter type

String

Syntax

ASM_PREFERRED_READ_FAILURE_GROUPS = ., ...

Default value

NULL

Modifiable

ALTER SYSTEM

Basic

No

Real Application Clusters

The value is different on different nodes

ASM_PREFERRED_READ_FAILURE_GROUPS specifies the failure groups that contain preferred read disks. Preferred disks are instance specific. This parameter is only valid in ASM instances.

Note:

1. This parameter was introduced in 11g.

Oracle initializatoin parameters

ASM_POWER_LIMIT

Property

Description

Parameter type

Integer

Default value

1

Modifiable

ALTER SESSION, ALTER SYSTEM

Range of values

0 to 11

Real Application Clusters

Multiple instances can have different values.

Note:

1. This parameter may only be specified in an Automatic Storage Management instance.

ASM_POWER_LIMIT specifies the maximum power on an Automatic Storage Management instance for disk rebalancing. The higher the limit, the faster rebalancing will complete. Lower values will take longer, but consume fewer processing and I/O resources.

If the POWER clause of a rebalance operation is not specified, then the default power will be the value of ASM_POWER_LIMIT.

2. This parameter was introduced in 10g.

3. Query for the current value of the parameter

select name, value, isdefault, isses_modifiable, issys_modifiable,

isinstance_modifiable, isdeprecated, description

from v$parameter where upper(name) = 'ASM_POWER_LIMIT';

NAME

VALUE

IS

DEFAULT

ISSES_

MODIFIABLE

ISSYS_

MODIFIABLE

ISINSTANCE_

MODIFIABLE

IS

DEPRECATED

DESCRIPTION

asm_power_limit

1

TRUE

TRUE

IMMEDIATE

TRUE

FALSE

number of processes for disk rebalancing

Oracle initializatoin parameters