Oracle Audit Vault and Database Firewall Installation Guide (Audit Vault Server 12.2.0.4)
Introduction
Oracle Audit Vault and Database Firewall (AVDF) is a comprehensive security solution that monitors and audits Oracle and non-Oracle database traffic, helping organizations meet regulatory compliance requirements. It provides a centralized platform for collecting, managing, and analyzing audit data from databases across the enterprise.
The installation of AVDF 12.2.0.4 involves two distinct components:
Audit Vault Server — Collects and stores audit data
Database Firewall — Monitors and controls database traffic
This guide focuses on the installation of the Audit Vault Server only. A separate guide covers the Database Firewall installation and the integration between the two components.
⚠️ Critical Note: The Audit Vault Server and Database Firewall server are software appliances. You must not make any changes to the Linux operating system through the command line on these servers unless following official Oracle documentation or under guidance from Oracle Support. Unauthorized changes can compromise the appliance's integrity and supportability.
Overview of the Installation Process
| Phase | Activity | Description |
|---|---|---|
| 1 | Media Download | Obtain the installation media from Oracle eDelivery |
| 2 | Prerequisites | Prepare the host machine and guest VM |
| 3 | Installation | Install the Audit Vault Server software |
| 4 | Post Installation | Configure users, passwords, and settings |
Audit Vault and Database Firewall Architecture
The AVDF architecture consists of the following components:
| Component | Role |
|---|---|
| Audit Vault Server | Central repository for audit data; provides reporting and analysis |
| Database Firewall | Monitors and controls database traffic; captures audit events |
| Agents | Collect audit data from monitored databases |
| Web Console | Browser-based interface for administration and reporting |
Note: This guide covers only the Audit Vault Server installation. The Database Firewall and integration steps are covered in separate guides.
Phase 1: Media Download
Download the installation media from Oracle eDelivery:
Log in to eDelivery:
Navigate to Oracle eDelivery
Search for the Required Media:
Search for Oracle Audit Vault and Database Firewall 12.2.0.4
Download the Media:
The total media size is approximately 12.6 GB
Ensure you have sufficient disk space and a stable internet connection
Note: The media includes multiple disks (ISO files). You will need all of them for the installation.
Phase 2: Prerequisites
Host Machine Requirements
| Component | Requirement |
|---|---|
| Processor | Latest and fast processors |
| Memory | At least 8 GB |
| Operating System | Windows/Linux 64-bit |
| Disk Space | At least 100 GB free HDD |
| Virtualization | Oracle VirtualBox pre-installed |
| Network | Host machine should be able to access the guest machine |
Guest Machine (AV Server) Requirements
| Component | Value |
|---|---|
| IP Address | 192.168.56.68 |
| Subnet Mask | 255.255.255.0 |
| Gateway | 192.168.56.1 |
Phase 3: Installation
Step 1: Set Up the Virtual Machine
Create a New Virtual Machine:
Click the New icon in VirtualBox
Give a name for the Audit Vault Server
Configure the VM Type:
Type: Linux
Version: Oracle (64-bit)
Click Next
Specify Memory Size:
For testing purposes, 2 GB should work
In this example, 3072 MB was allocated (the host had 12 GB RAM)
Click Next
Add a Virtual Hard Disk:
Select Create a virtual hard drive now
Click Create
Select Hard Drive File Type:
Select VMDK (Virtual Machine Disk)
Click Next
This file type allows splitting files into sizes less than 2 GB
Configure Storage:
Select Dynamically Allocated
Select Split into files of less than 2 GB
Click Next
Set File Location and Size:
Review the file location
Enter 220 GB as the size
Click Create
⚠️ Critical: If the size of the virtual hard disk is less than 220 GB, the installation will terminate.
Review VM Details:
Review the details of the virtual machine
Use the Settings icon to modify any settings if necessary
Step 2: Configure the Virtual Optical Disk
Select the ISO File:
Choose Disk 1 of the Audit Vault ISO image file
V840182-01
Step 3: Set the Network Adapter
Configure Network:
Select Attached to: Host-only Adapter
Click OK
Note: The Host-only Adapter allows the host machine to communicate with the guest machine directly.
Step 4: Start the Installation
Start the VM:
Click the Start button
Begin Installation:
Select Install in the flash screen
Press Enter
Follow the Installation Prompts:
| Prompt | Action |
|---|---|
Insert Disk 2 (V840183-01.iso) | Select OK, press Enter |
Insert Disk 1 (V840182-01.iso) again | Select OK, press Enter |
| Enter the installation passphrase | Type a strong passphrase, press Enter |
| Confirm the passphrase | Re-enter the passphrase, press Enter |
Passphrase Requirements: The passphrase should be 8 characters or more and contain:
At least one uppercase letter
At least one lowercase letter
At least one digit
At least one punctuation mark
Example:
Temp237_4OImportant: This passphrase will be used later to change other system passwords. Note it securely for future reference.
Installation Successful:
A screen confirming "Oracle Audit Vault Installation Successful" appears
Press Enter to continue
Step 5: Configure the Management Interface
Select Management Interface:
Choose one of the available interfaces as the Management Interface
This will be used to connect to the Audit Vault Server via SSH, PuTTY, etc.
Press Enter to make the selection
Select Ethernet Device:
Select an available ethernet device
Press Enter
Specify IP Address:
Enter IP address, subnet mask, and gateway for the management interface:
| Setting | Value |
|---|---|
| IP Address | 192.168.56.68 |
| Subnet Mask | 255.255.255.0 |
| Gateway | 192.168.56.1 |
Press Enter to complete the installation and reboot the server
Step 6: First Reboot
⚠️ Important: The first reboot of the server could take up to an hour depending on the machine's configuration. There is nothing to do here other than wait until the installation completes.
Step 7: Installation Complete
After the reboot, the final screen appears, confirming that the Audit Vault Server installation is complete.
Use the Up/Down arrow keys to make selections
Press Enter to confirm
Phase 4: Post Installation
Step 1: Log In to the Database Vault Web Console
Open a Web Browser:
On your host machine, open a web browser
Navigate to the Console:
Enter the following URL:
https://192.168.56.68
Handle the Security Certificate:
Click Add Exception
Confirm Security
Step 2: Enter the Installation Passphrase
Type the installation passphrase created during installation
Click Login
Step 3: Set Usernames and Passwords
Set the passwords for the Audit Vault Server users:
| User | Purpose |
|---|---|
| Super Administrator | Administrative user |
| Super Auditor | Auditor user |
| Root | Root OS user |
| Support | Support user |
Username Requirements
The first character is alphabetical
Each remaining character is alphanumeric or an underscore (
_), dollar sign ($), or number sign (#)
Password Requirements
For Unicode characters (non-English):
Between 8 and 30 characters long
For English-only ASCII printable characters:
Between 8 and 30 characters long
Contain at least one of each:
Lowercase letters:
a-zUppercase letters:
A-ZDigits:
0-9Punctuation marks:
,.+:!_
Not contain double quotes (
"), backspace, or control characters
Oracle also recommends:
Not be the same as the username
Not be an Oracle reserved word
Not be an obvious word
Not contain repeating characters
Configure the Users
Super Administrator:
Enter the administrator username
Enter the password and confirm it
Click Validate username
Super Auditor:
Enter the auditor username
Enter the password and confirm it
Click Validate username
Repository Encryption:
Enter the Keystore Password
Audit event data is automatically encrypted using Oracle Database Transparent Data Encryption (TDE)
The keystore password is required to reset the TDE master key
Root Password:
Enter the password for root
Confirm it in the Re-enter New Password field
Support User Password:
Enter the password for the support user
Confirm it in the Re-enter New Password field
Step 4: Set the Audit Vault Server Time
Strongly Recommended: Configure the time settings.
Time Setup:
Select Set Manually
⚠️ DNS Setup Note: Set Audit Vault Server DNS server values only if the network has DNS servers. Otherwise, system performance will be impaired.
Save the Configuration:
Click Save in the upper right corner
Step 5: Log In to the Audit Vault Server Console
Redirect to Login Page:
After clicking Save, the server redirects to the Login page
Provide Credentials:
Enter the username and password
Click Login
Audit Vault Home Page:
After a successful login, the server redirects to the Audit Vault Server console home page
Result: Congratulations! Audit Vault Server 12.2.0.4.0 installation is now complete.
The Complete Installation Flow
┌─────────────────────────────────────────────────────────────────┐
│ 1. MEDIA DOWNLOAD │
│ Download from Oracle eDelivery (~12.6 GB) │
└──────────────────────────┬──────────────────────────────────────┘
│
▼
┌─────────────────────────────────────────────────────────────────┐
│ 2. PREREQUISITES │
│ Host: 8GB RAM, 100GB HDD, VirtualBox │
│ Guest: IP 192.168.56.68, Subnet 255.255.255.0 │
└──────────────────────────┬──────────────────────────────────────┘
│
▼
┌─────────────────────────────────────────────────────────────────┐
│ 3. INSTALLATION │
│ Create VM → Configure disks → Start installation │
│ Insert disks → Set passphrase → Configure network │
│ Wait for first reboot (~1 hour) │
└──────────────────────────┬──────────────────────────────────────┘
│
▼
┌─────────────────────────────────────────────────────────────────┐
│ 4. POST INSTALLATION │
│ Web console → Set passwords → Configure time → Login │
└─────────────────────────────────────────────────────────────────┘Key Configuration Summary
| Item | Value |
|---|---|
| AV Server IP | 192.168.56.68 |
| Subnet Mask | 255.255.255.0 |
| Gateway | 192.168.56.1 |
| Web Console URL | https://192.168.56.68 |
| Disk Size | 220 GB minimum |
| Memory (Test) | 2 GB minimum (3 GB recommended) |
| Media Size | ~12.6 GB |
Best Practices
| Practice | Description |
|---|---|
| Do Not Modify the OS | Never make unauthorized changes to the appliance OS |
| Use Strong Passphrases | Follow the password complexity requirements |
| Document Passwords Securely | Store passwords in a secure password manager |
| Set the Time | Configure the server time accurately for audit accuracy |
| Avoid DNS If Not Needed | Only configure DNS if your network has DNS servers |
| Allocate Sufficient Disk | Ensure at least 220 GB for the virtual disk |
| Be Patient with First Reboot | The first reboot can take up to an hour |
| Back Up Configuration | Back up the AVDF configuration after setup |
| Follow Oracle Documentation | Always refer to official Oracle documentation |
Troubleshooting Common Issues
| Issue | Possible Cause | Solution |
|---|---|---|
| Installation terminates | Virtual disk < 220 GB | Recreate the VM with at least 220 GB |
| Cannot access web console | Network misconfiguration | Verify IP, subnet, and gateway settings |
| Certificate warning | Self-signed certificate | Click "Add Exception" and confirm |
| Passphrase rejected | Weak passphrase | Use a stronger passphrase meeting requirements |
| First reboot takes too long | Large configuration | Be patient—it can take up to an hour |
| Web console won't load | Service not started | Wait for the reboot to complete |
| Username validation fails | Invalid characters | Use only allowed characters in the username |
| Password validation fails | Missing complexity | Include uppercase, lowercase, digit, and punctuation |
Summary
Installing Oracle Audit Vault Server 12.2.0.4 involves the following key phases:
Media Download: Obtain the installation media from Oracle eDelivery (~12.6 GB)
Prerequisites: Prepare the host machine and guest VM with adequate resources
Installation: Create the VM, configure disks, run the installer, and set the passphrase
Post Installation: Configure users, passwords, time settings, and log in to the web console
Key Points to Remember
The Audit Vault Server is a software appliance — do not modify the OS
The virtual disk must be at least 220 GB or the installation will terminate
The installation passphrase must meet complexity requirements and be stored securely
The first reboot can take up to an hour — be patient
The web console is accessed at
https://192.168.56.68DNS should only be configured if your network has DNS servers
User passwords must meet strict complexity requirements
Repository encryption uses Oracle TDE for audit data protection
Why This Matters
Oracle Audit Vault and Database Firewall is essential for:
Regulatory Compliance: Helps meet SOX, HIPAA, PCI-DSS, and GDPR requirements
Database Security: Monitors and controls database traffic in real time
Centralized Auditing: Collects audit data from multiple databases into one repository
Threat Detection: Identifies suspicious database activity
Audit Reporting: Provides comprehensive reports for auditors and administrators
Separation of Duties: Separates the auditor role from the administrator role
By mastering the installation of Oracle Audit Vault Server, you can build a robust database security and auditing infrastructure that protects your organization's most critical data assets.
References
Oracle Documentation: Oracle Audit Vault and Database Firewall Installation Guide
Oracle Documentation: Oracle Audit Vault and Database Firewall Administrator's Guide
Oracle eDelivery: Oracle Audit Vault and Database Firewall 12.2.0.4 Media
My Oracle Support: Oracle Audit Vault and Database Firewall Certification Matrix
Related Articles: Oracle Database 19c Installation, Oracle GoldenGate Installation
No comments:
Post a Comment