Wazuh SIEM

k3s deployment, all pods running

Category

SECURITY

Status

Active

Premise

Security information and event management

Goals

  • All infrastructure hosts reporting

  • VyOS/ISE log integration

  • Active response automation

Current State

Deployed on k3s, indexing enabled

Next Steps

  • Deploy agents to all hosts

  • Configure VyOS syslog forwarding

  • Enable archives indexing

Architecture Notes

Agents → Manager → Indexer → Dashboard