Тёмный

Wazuh SIEM & Zenarmor NGFW Integration using Syslog 

LS111 Cyber Security Education
Подписаться 12 тыс.
Просмотров 9 тыс.
50% 1

NOTE: This video is sponsored by Zenarmor and I do receive a small percentage back for every referral that signs up using the link, which gets put towards my Zenarmor subscription.
Welcome to my channel!
In this video, we are going to integrate Zenarmor NGFW with the open-source Wazuh SIEM/SDR by ingesting Syslog messages generated by Zenarmor. I will walk you through the setting up of custom Wazuh decoders and rules and we are going to test how Zenarmor blocks access to a potential phishing website and creates the event alerts in Wazuh for further analysis.
This video supplements my cyber security lab building series, so if you want to learn how to install Wazuh and Zenarmor before attempting this integration I have included the Wazuh installation tutorial as well as the Zenarmor installation tutorial in the playlists linked below.
P.S. Please don't forget to like and subscribe and share with your friends!
🔗Sign up link: sunnyvalley.cl...
Zenarmor Playlist:
• Improve your cyber sec...
Cyber Security Lab Building Series Playlist:
• Virtual Cyber Security...
Blog post:
ls111.me/integ...
DISCLAIMER: All information, techniques, and tools showcased in these videos are for educational and ethical penetration testing purposes ONLY. NEVER attempt to use this information to gain unauthorized access to systems without the EXPLICIT consent of its owners. This is a punishable offense by law in most countries.
#zenarmor #wazuh #SIEM #XDR #NGFW #cybersecurity #soc #blueteam

Опубликовано:

 

4 окт 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 7   
@azizihack6593
@azizihack6593 4 месяца назад
I hope to see more videos from this channel, very informative, detailed and organized content.
@kirennguyen1140
@kirennguyen1140 11 месяцев назад
Can't wait for the whole series. Thank you for your sharing
@paz5655
@paz5655 8 месяцев назад
I see this is sponsored by ZenArmor. But can you answer, for example on OPNsense or pfSense, why not just use the built-in syslog or wazuh agent over zenarmor adding another layer of complexity?
@amjads8971
@amjads8971 9 месяцев назад
Can you only monitor and install agents on ec2/vietual machines or you can also install it in kubernetes to monitor cluster nodes/pods/services ?
@Samran_Shahzad
@Samran_Shahzad 7 месяцев назад
Hi, anyone tell me that how can I confirm that my linux rsyslog is coming in wazuh dashboard how to check that?? How to configure rsyslog of kali linux without adding as an agent ??
@jcevo2308
@jcevo2308 5 месяцев назад
ngrep is your friend when trying to figure out if Wazuh is "seeing" it in the first place!
@Ian-sj9id
@Ian-sj9id Год назад
*promo sm* 🍀
Далее
МАЛОЙ ГАИШНИК
00:35
Просмотров 556 тыс.
V16 из БЕНЗОПИЛ - ПЕРВЫЙ ЗАПУСК
13:57
this Cybersecurity Platform is FREE
39:46
Просмотров 574 тыс.
Wazuh Install - Worlds Best OpenSource EDR!
26:23
Просмотров 29 тыс.
you need this FREE CyberSecurity tool
32:06
Просмотров 1,2 млн
Secure Your OPNsense Network with Zenarmor NGFW!
36:25
МАЛОЙ ГАИШНИК
00:35
Просмотров 556 тыс.