Qianlitp / WatchAD

AD Security Intrusion Detection System
GNU General Public License v3.0
1.29k stars 295 forks source link

请问krb5的日志来自哪里?也是来自winlogbeat吗 #33

Open xizhimen opened 4 years ago

xizhimen commented 4 years ago

请问krb5的日志来自哪里?也是来自winlogbeat吗

Qianlitp commented 4 years ago

这个krb5是采集的域控kerberos流量,流量采集的agent和相关检测代码,此次并未开源。