Тёмный

WAZUH - File Integrity Monitoring (FIM) 

UpBrightSkills
Подписаться 1,5 тыс.
Просмотров 22 тыс.
50% 1

#fileintegrity #wazuh #fileintegritymonitoring #fim
How to Setup File Integrity Monitoring - Monitor your critical servers using file integrity monitoring feature of Wazuh.
Wazuh is a free, open source and enterprise-ready security monitoring solution for threat detection, integrity monitoring, incident response and compliance.
Feature Like
1. Security Analytics
2. Intrusion Detection
3. Log Data Analysis
4. File Integrity Monitoring
5. Vulnerability Detection
6. Configuration Assessment
7. Incident Response
8. Regulatory Compliance
9. Cloud Security
10. Containers Security
Wazuh - wazuh.com/
Wazuh Ova Download (Version 3.12) - documentation.....
Wazuh Agent Download - documentation....
Wazuh FIM - documentation....
Wazuh Setup Video - • Setup Wazuh - Open Sou...
UpBrightSkills Blogs - www.upbrightsk...

Опубликовано:

 

8 сен 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 28   
@naseraslam92
@naseraslam92 2 года назад
Nice Video. Keep it up, These videos are helpful for us. Thanks!
@UpBrightSkills
@UpBrightSkills 2 года назад
Thanks for your input.
@SuperChelseaSW6
@SuperChelseaSW6 4 года назад
Policy monitoring and pci-dss are interesting demos.
@symnrari
@symnrari 3 года назад
Hi, It's very good video it works for me .
@UpBrightSkills
@UpBrightSkills 3 года назад
Glad to hear
@wambanguemo6457
@wambanguemo6457 2 года назад
Thanls for This Video
@nurbekkoblanov5103
@nurbekkoblanov5103 3 года назад
Hello sir the centralized configuration will take preference and override the local configuration. Do i need to change this settings in local or in the manager? if i set real time only in one directoris it will send logs immediately to the manager? and the others directory will be checked every 12 hours>
@UpBrightSkills
@UpBrightSkills 3 года назад
Central configuration will take precedence. You can define the central agent based configuration in agent.conf file for respective agent group.
@tanaypatil6751
@tanaypatil6751 2 года назад
Sir please make videos on "THREAT DETECTION AND RESPONSE in WAZUH"
@UpBrightSkills
@UpBrightSkills 2 года назад
Yes it is in pipeline will be uploading video soon
@ebrahima3611
@ebrahima3611 3 года назад
Thanks for the video.. I followed exact the same steps but no idea why it shows [There are no results] on Kibana integrity monitoring dashboard!
@indramayathanait8806
@indramayathanait8806 4 года назад
I have one question. Rule to detect brute force attack in windows agent please give me solution
@UpBrightSkills
@UpBrightSkills 4 года назад
You can use Kibana dashboard to grab the alerts. documentation.wazuh.com/3.12/learning-wazuh/rdp-brute-force.html?highlight=brute%20force%20attack
@indramayathanait8806
@indramayathanait8806 4 года назад
@@UpBrightSkills how can this output should alert in email. I have little problem alerting this output to my mail.
@srich9382
@srich9382 Год назад
How do configure email alert. Can you please make a video for this.
@SuperChelseaSW6
@SuperChelseaSW6 4 года назад
Nice vid sir. I have a question. My cluster has a yellow health .I have only one machine running elasticsearch.so I want to add another node , how do I figure out? Thanks!
@HammadAshaq
@HammadAshaq 11 месяцев назад
can i use it as a final year project of cyber security ???? if not tell me how i make integerity cheaker project
@UpBrightSkills
@UpBrightSkills 7 месяцев назад
Yes you can use it for final year project, making and integrity cheaker is very easy with Wazuh.
@chungdutshering-cr4ju
@chungdutshering-cr4ju 5 месяцев назад
Hello, Is it possible to show IP address of the other users on FIM wazuh running on windows server?
@lavishjhamb3521
@lavishjhamb3521 4 года назад
Does it support real-time monitoring?
@UpBrightSkills
@UpBrightSkills 4 года назад
Yes, It Support real-time monitoring and will also send alerts based on the rules which you configure.
@lavishjhamb3521
@lavishjhamb3521 4 года назад
@@UpBrightSkills How does it do the real time monitoring - Does it hook the kernel directly or leverage the syslog service?
@ab866
@ab866 3 года назад
@@lavishjhamb3521 You can use Syslog or API integration for firewall devices and for Kernel level you can enable the "Kernel Module".
@RavindraRaivlogs
@RavindraRaivlogs 3 года назад
follow your video step but still not show dashboard please help me why my OS is linux ubuntu
@UpBrightSkills
@UpBrightSkills 3 года назад
Which dashboard you are talking about sir.
@Ravindrakumar-xo1jm
@Ravindrakumar-xo1jm 3 года назад
@@UpBrightSkills no 43200 yes yes no /etc,/usr/bin,/usr/sbin /bin,/sbin,/boot /root/npst NOTE:- only i have change add this line because i create directory npst /root/npst
@Ravindrakumar-xo1jm
@Ravindrakumar-xo1jm 3 года назад
ravindra kumar is also npst noida
@Ravindrakumar-xo1jm
@Ravindrakumar-xo1jm 3 года назад
i am talking about file integrity dasboard
Далее
WAZUH - Setup Email Notification / Alerts
7:52
Просмотров 20 тыс.
The Wazuh File Integrity Monitoring (FIM) Use case
32:04
Starman🫡
00:18
Просмотров 12 млн
Setup Wazuh - Open Source Security Platform
30:35
Просмотров 51 тыс.
Wazuh - Unattended Setup - CentOS
12:09
Просмотров 4,5 тыс.
this Cybersecurity Platform is FREE
39:46
Просмотров 565 тыс.
Starman🫡
00:18
Просмотров 12 млн