Wazuh SIEM
Premise
Security information and event management
Goals
-
All infrastructure hosts reporting
-
VyOS/ISE log integration
-
Active response automation
Current State
Deployed on k3s, indexing enabled
Next Steps
-
Deploy agents to all hosts
-
Configure VyOS syslog forwarding
-
Enable archives indexing
Architecture Notes
|
Agents → Manager → Indexer → Dashboard |