官术网_书友最值得收藏!

Auditbeat

Auditbeat can be installed and configured on any server to audit the activities of users and processes. It's a lightweight data shipper that sends the data directly to Elasticsearch or using Logstash. Sometimes it's difficult to track changes in binaries or configuration files; Auditbeat is helpful here because it detects changes to critical files, such as different configuration files and binaries.

We can configure Auditbeat to fetch audit events from the Linux audit framework. The Linux audit framework is an auditing system that collects the information of different events on the system. Auditbeat can help us to take that data and push it to Elasticsearch from where Kibana can be utilized to create dashboards.

主站蜘蛛池模板: 汉阴县| 洪江市| 大足县| 台山市| 剑河县| 台中市| 贡觉县| 望都县| 通渭县| 远安县| 五台县| 中牟县| 焉耆| 嘉义县| 万年县| 阳原县| 珲春市| 满城县| 祁门县| 天全县| 平泉县| 集贤县| 景泰县| 左云县| 青田县| 高密市| 万州区| 尼木县| 白朗县| 凤山县| 宁陵县| 云霄县| 福州市| 安义县| 阿拉善左旗| 利辛县| 汤原县| 高州市| 句容市| 龙陵县| 赣州市|