IBM Security Guardium

 View Only
  • 1.  Unable to get traffic from Azure DB

    Posted 21 days ago
    Hi Experts,
    In our environment, we are trying to integrate four cloud-based Microsoft SQL Azure databases. We have saved the input and filter configuration and installed the plugins successfully. However, we are only receiving traffic from one database, which is visible on the S-TAP Status Monitor page.
     
    We are not receiving traffic from the other three databases. We have verified the configurations, and the input and filter settings all look perfect. Can anyone help with this?


    ------------------------------
    ALBERT A
    ------------------------------


  • 2.  RE: Unable to get traffic from Azure DB

    Posted 13 days ago

    Hi Albert,

    Do you have OS access of these Dbs? and you have installed STAP agents on it directly or via GIM?

    Have you tried to telnet Guardium required port from windows db host? ports like 8443, 8444, 8446, 9500, 9600 and others?

    from Guardium cli try, support show port open <dbhostip> <9500>

    the above will give you an idea but you can't trust this command 100%

    Go to services.msc on db machine and check the status of Gim and STAP services. check guard.ini file if it is sending logs to correct guardium server? try to disable ssl and see if that helps? if you recently upgraded you guardium from 11.3 or prior versions? yes? there may be an issue with SHA certification.



    ------------------------------
    Regards,
    Rizwan Ali
    Senior Guardium Consultant
    Pakistan
    ------------------------------