My Oracle Support Banner

AVDF Endpoint Using Site-2-site VPN, AV Agent Becomes Unreachable (Doc ID 2376416.1)

Last updated on MARCH 21, 2018

Applies to:

Oracle Audit Vault and Database Firewall - Version 12.2.0.5 and later
Information in this document applies to any platform.

Goal

I have registered an endpoint that is hosted in public OPC and AVDF Server is on-premise. Site-2-site VPN is setup for OPC between OPC DB host and AV Server. EndPoint
is multi-tenant database with 2 PDBs.

Two audit trails are setup for CDB$ROOT and one of the PDB. AV agent was setup
on the DB host. On start of AV agent, it works good for some time ( may be 1-2
hours), but after that either one of audit trails or both become unreachable in AV console.

Checking status of AV agent from command line show:
$ ../../bin/agentctl status
Agent is unreachable.

AV Agent is still running:
$ ps -ef | grep avagent
oraamp 45154 43585 0 14:16 pts/0 00:00:00 grep --color=auto avagent
oraamp 54909 1 0 Sep22 ? 00:09:40 /java/jdk/bin/java -Xms512m
-Djava.security.egd=file:/dev/./urandom -DNLS_LANG=
-DAGENT_HOME=/oraamp/app/oracle/product/avagent12c
-Dsun.zip.disableMemoryMapping=true -DAGENT_PLATFORM=linux.x64 -classpath
:/oraamp/app/oracle/product/avagent12c/av/jlib/dep_jre7/ojdbc7.jar:/oraamp/app
/oracle/product/avagent12c/av/jlib/activation.jar:/oraamp/app/oracle/product/a
vagent12c/av/jlib/agentre.jar:/oraamp/app/oracle/product/avagent12c/av/jlib/an
tlr-complete-3.5.2.jar:/

AV agent would not stop with "agentctl stop" command even if "-force" option
is used. Only way to restart agent is to kill current Java process and then
start agent that would work for sometime before again becoming unreachable.

Solution

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.