Difference between revisions of "Wazuh"
From Notes_Wiki
Sunilvarma (talk | contribs) |
Sunilvarma (talk | contribs) |
||
| (One intermediate revision by the same user not shown) | |||
| Line 11: | Line 11: | ||
*[[Script to Pull Logs from Wazuh-Manager to Local VM]] | *[[Script to Pull Logs from Wazuh-Manager to Local VM]] | ||
*[[Re-indexing the archives.json file in Wazuh]] | *[[Re-indexing the archives.json file in Wazuh]] | ||
*[[Forwarding Firewall Logs to Wazuh Manager]] | *[[Forwarding Palo Alto Firewall Logs to Wazuh Manager]] | ||
*[[Suppressing False Positive Alerts in Wazuh for VirusTotal SHA1 Matches]] | |||
Latest revision as of 12:26, 28 September 2025
- Hive
- Wazuh Custom Rule Creation
- Deleting Shards Manually in Wazuh
- Export of alerts or logs in Wazuh
- Supressing alerts based on rule id in Wazuh
- Wazuh Alert Analysis: Exporting to CSV and Summarizing Rule ID Counts
- State Management Policy configuration in Wazuh for Retention
- Zabbix Script for Shards Monitoring
- Script to Pull Logs from Wazuh-Manager to Local VM
- Re-indexing the archives.json file in Wazuh
- Forwarding Palo Alto Firewall Logs to Wazuh Manager
- Suppressing False Positive Alerts in Wazuh for VirusTotal SHA1 Matches