Target Database Registration Overview
To use an Oracle database with Oracle Data Safe, you first need to register it with Oracle Data Safe.
Supported Target Databases
The following table lists the Oracle databases that you can register with Oracle Data Safe; their supported workload types, software editions, and versions; connection protocol options; and connection requirements.
Note:
- SQL Firewall management in Oracle Data Safe is only available for Oracle Database 23ai target databases.
- Oracle Data Safe supports the registration of Active Data Guard deployments for Oracle Database 12.2 and above. The minimum version supported for using Activity Auditing with Active Data Guard is Oracle Database 19.21.
- Oracle Data Safe supports the registration of container databases (CDBs) in Oracle Database 19c and above.
- Provisioning and retrieval of audit policies is not supported in Oracle Database 12.1 and below.
Oracle Database | Supported Workload Types/Oracle Database Software Editions/Versions | TCP/TLS Connection Protocol Options | Connectivity Options | Active Data Guard Support |
---|---|---|---|---|
Amazon RDS for Oracle |
Oracle Database software editions:
Versions: 19c or 21c |
TCP or TLS |
|
Supported |
Autonomous Database on Exadata Cloud@Customer |
Workload types:
Versions: Latest version |
TLS |
|
Not supported |
On-Premises Oracle Database |
Oracle Database software editions:
Versions: 11.2.0.4, 12.1, 12.2.0.1 or later |
TCP or TLS |
|
Supported |
Oracle Autonomous Database on Dedicated Exadata Infrastructure (Private IPs) |
Workload types:
Versions: Latest version |
TLS |
Private endpoint |
Not supported |
Oracle Autonomous Database Serverless |
Workload types:
Versions: Latest version |
TLS |
Public IP: No requirements Private IP: Private endpoint |
Not supported |
Oracle Base Database Service DB system - Virtual Machine |
Oracle Database software editions:
Versions: 11.2.0.4, 12.1, 12.2.0.1 or later |
TCP or TLS |
Private IP: Private endpoint |
Supported |
Oracle Database@Azure Oracle Autonomous Database Registration through the Autonomous Database Wizard |
Workload types:
Versions: Latest version |
TLS | Private Endpoint | Not supported |
Oracle Database@Azure Oracle Exadata Database Service Registration through the Oracle Cloud Database Wizard |
Oracle Database software editions:
Versions: 19c |
TCP or TLS |
Private endpoint |
Supported |
Oracle Database on a compute instance in a non-Oracle cloud environment |
Oracle Database software editions:
Versions: 11.2.0.4, 12.1, 12.2.0.1 or later |
TCP or TLS |
|
Supported |
Oracle Database on a compute instance in Oracle Cloud Infrastructure |
Oracle Database software editions:
Versions: 11.2.0.4, 12.1, 12.2.0.1 or later |
TCP or TLS |
|
Supported |
Oracle Exadata Database Service on Cloud@Customer |
Oracle Database software editions:
Versions: 11.2.0.4, 12.1, 12.2.0.1 or later |
TCP or TLS |
|
Supported |
Oracle Exadata Database Service on Dedicated Infrastructure |
Oracle Database software editions:
Versions: 11.2.0.4, 12.1, 12.2.0.1 or later |
TCP or TLS |
Private IP: Private endpoint |
Supported |
Oracle Exadata Database Service on Exascale Infrastructure |
Oracle Database software editions:
Versions: 11.2.0.4, 12.1, 12.2.0.1 or later |
TCP or TLS |
Private IP: Private endpoint |
Supported |
* The Data Discovery and Data Masking features are not supported for JSON type columns.
Oracle Data Safe is a multi-tenant service running in a service tenancy owned by Oracle. Service data associated with the instance is stored in a back-end Oracle Autonomous Database Serverless database that’s dedicated to the customer and region and is isolated from other customers' instances. For more information, refer to the Privacy and Security Feature Guidance for Oracle Autonomous Database Serverless available on My Oracle Support (Doc ID 114.2).
Security Levels for Target Databases
To use a database with Oracle Data Safe, you need to configure security in Oracle Cloud Infrastructure Identity and Access Management (IAM) and on the database.
There are two levels of security that you need to configure for a target database:
- Policies in IAM - You need to configure policies in IAM that allow users access to compartments, Oracle databases, network resources, and Oracle Data Safe resources. You may also need to update security lists and network security groups.
- Roles on the target database - You need to grant roles to the Oracle Data Safe service account on your database. The roles determine the Oracle Data Safe features that you can use with your database.
Where to Register Target Databases
You can register target databases from the following locations:
- Register any target database via a wizard from the Overview page for the Oracle Data Safe service in the Oracle Cloud Infrastructure Console.
- Register any target database from the Target Databases page for the Oracle Data Safe service in the Oracle Cloud Infrastructure Console. You can manually register a target database (for advanced users) or use a wizard.
- Register an Autonomous Database with Oracle Data Safe from an Autonomous Database's Console in Oracle Cloud Infrastructure.