官术网_书友最值得收藏!

Auditbeat

Auditbeat can be installed and configured on any server to audit the activities of users and processes. It's a lightweight data shipper that sends the data directly to Elasticsearch or using Logstash. Sometimes it's difficult to track changes in binaries or configuration files; Auditbeat is helpful here because it detects changes to critical files, such as different configuration files and binaries.

We can configure Auditbeat to fetch audit events from the Linux audit framework. The Linux audit framework is an auditing system that collects the information of different events on the system. Auditbeat can help us to take that data and push it to Elasticsearch from where Kibana can be utilized to create dashboards.

主站蜘蛛池模板: 长白| 夏河县| 永丰县| 海门市| 潮安县| 古田县| 枞阳县| 师宗县| 通许县| 仲巴县| 浦江县| 安仁县| 阜康市| 卢氏县| 红原县| 太原市| 龙口市| 钟山县| 玉溪市| 达孜县| 和硕县| 平谷区| 余干县| 茂名市| 平南县| 昌邑市| 靖州| 古交市| 石嘴山市| 博客| 武功县| 罗平县| 濮阳市| 宜丰县| 吐鲁番市| 闸北区| 繁峙县| 和顺县| 象州县| 关岭| 仙桃市|