You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I added a class to the event-generator script that allows it to connect to the datagram socket of the Wazuh Manager under /var/ossec/queue/sockets/queue that looks like the following:
But the sample alerts.json file does not include a full_log field (as most real world alerts do), so we need to discuss whether we want to change our sample data or move to some other technique.
In the end I discarded the above work and managed to get the events generator script to write to the manager's /var/ossec/logs/alerts/alerts.json directly.
Description
Import Manager integration to Elastic.
Tasks
The text was updated successfully, but these errors were encountered: