# Private message from system

**URL:** <https://forums.suse.com/t/private-message-from-system/35786>\
**Category:** General\
**Created:** [May 13, 2015, 9:05am UTC](https://forums.suse.com/t/private-message-from-system/35786 "2015-05-13T09:05:52Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex022/uploads/suse/original/2X/5/5012ba89e3ffb5220dac47d5ea0ba032e2fe1cb6.png) [@system](https://forums.suse.com/u/system)\
**Post date:** [May 13, 2015, 9:05am UTC](https://forums.suse.com/t/private-message-from-system/35786/1 "2015-05-13T09:05:52Z")

</div>

Hi,

I have a Suse Linux server that hosts an Oracle 11g database for SAP Application.  
I am trying to enable DB auditing for the database and then send the audit logs via syslog to a remote SIEM server.

The syslog configuration in the syslog-ng.conf file on the SUSE server is given below:

##########################################  
filter f\_info { level(info,err,crit) and not facility(news, mail); };

destination siem\_name {  
udp(“10.200.0.51” port(514));  
};

log {  
source(src);  
filter(f\_info);  
destination(siem\_name);  
};  
###########################################

Please tell me how can I transfer the oracle audit logs to the SIEM using syslog.  
The default path where the oracle audit log trace files are generated on the SUSE server, is /oracle/EP1/saptrace/audit

Regards,  
RD
