-
Similar to Auditbeat's FIM module, our new FIM integration can monitor for file changes, but does not include the user information to capture who modified/accessed the file. This is a significant visi…
-
The [file_integrity integration](https://docs.elastic.co/en/integrations/fim) can monitor for file changes, but does not include information about the user that modified the file. This is a significan…
-
**Describe the enhancement:**
FIM module collect the user name info and visualize in user.name field on both Linux and Windows
**Describe a specific use case for the enhancement or feature:**
…
-
Currently our file integrity monitoring (`Integrity checksum changed for 'blah'`) is producing a lot of alarms sent to admins. This produces quite a bit of noise for them to wade through, contributing…
-
|Wazuh version|Component|
|---|---|
| 4.0.3-1 | File integrity monitoring - syscheck |
## Feature Request
At the moment we are getting file integrity alerts on files that are expected to be …
-
-
### Community Note
* Please vote on this issue by adding a 👍 [reaction](https://blog.github.com/2016-03-10-add-reactions-to-pull-requests-issues-and-comments/) to the original issue to help the com…
-
```
Elastic Agent: v8.8.2
File Integrity Monitoring: v1.8.0
Host OS Version: Ubuntu 22.04.3
```
As stated in the title, once I have the FIM integration added to the policy, agent state turned to …
-
# Bug report
### What operating system and version are you using?
Oracle Linux 7
version = Red Hat Enterprise Linux Server release 7.7 (Maipo)
build =
platform = rhel
### What…
-
**Wazuh version:** 4.8.2
**Component:** Agent
**Install type:** MSI
**Install method:** Downloaded from the official Wazuh site
**Platform:** Windows Server 2019
**Issue description:**…