-
When an alert rule is firing (in state Alerting), should there be different severity states as well?
By Severity I mean: Critical, Warn, Info, etc
- How should severity specified?
- Per alert…
-
Hello,
The idea for this integration is to be able to ingest CrowdStrike logs into Wazuh.
It looks like the Falcon SIEM connector can create a data stream in a Syslog format.
We need to test …
-
### 使用
[How to Write Rules for Prometheus](https://petargitnik.github.io/blog/2018/01/04/how-to-write-rules-for-prometheus)
[How To Monitor Linux Servers Using Prometheus Node Exporter](https://devo…
-
|Wazuh version|Component|Install type|Install method|
|---|---|---|---|
| 4.2.6-rc6 | SCA | Manager | Packages |
Performing manual testing of the Wazuh app for the `pre-release` v4.3.0-rc6 versio…
-
### What would you like to see!
An integration might be used by multiple teams and then routed to the correct team using the routes/channel filters. The team for the alert group however seems to be s…
-
Old `.evtx` logs may be found in the Volume Shadow Copy Service backups so it would be nice to have a `--scan-vss-backups` option that is used when Hayabusa is doing a live analysis with `-l` in orde…
-
[root@iZ94rc264jtZ elastalert]# python2.7 -m elastalert.elastalert --verbose --config config.yaml --rule es_rules/wechart.yaml
/usr/lib/python2.7/site-packages/requests/__init__.py:80: RequestsDepend…
-
Hello everyone,
Please help me understand whether I misconfigured the Prometheus' Alertmanager in any way.
The scenario is the following:
If the alert is triggered during business hours, the no…
-
### Summary
This issue is a follow up of #101565 to discuss the following feedback point from @katefarrar:
If a user click "Create default rules" from the "Alerts and rules" dropdown they don't …
-
Currently NAGIOS is sending email alerts when there is an issue with the live-smtp-realtime consumer. We need to extend the alerting system to all consumers.
This involves writing new NAGIOS rules t…