OSSECΒΆ

Contents:

  • OSSEC and Elasticstack
    • Turn on json logging in OSSEC:
    • Logstash Config:
    • Filebeat Config:
  • OSSEC src
    • rootcheck
    • Windows
  • Required packages:
  • Monitor sysmon logs
  • mariadb
    • Preparing the mariadb database
    • Loading the ossec schema

notes

Navigation

  • databases
  • elastic stuff
  • OpenSSH
  • Operating Systems
  • OSSEC
    • OSSEC and Elasticstack
    • OSSEC src
    • Required packages:
    • Monitor sysmon logs
    • mariadb
  • ssl
  • Stupid Unix Tricks
  • Tools
  • Vendor Stuff
  • misc

Related Topics

  • Documentation overview
    • Previous: Windows Credential Manager
    • Next: OSSEC and Elasticstack

Quick search

This information has a good chance of being wrong, inconsistent, out of date, or just bad. Use at your own risk. Feel free to notify me of any issues though.