cisagov / LME

Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-time alerting, helping small to medium-sized organizations secure their infrastructure.
https://www.cisa.gov/resources-tools/services/logging-made-easy
Other
892 stars 72 forks source link

AD ID Logging Dashboards and New Wec Config XML File #388

Closed rgbrow1949 closed 3 months ago

rgbrow1949 commented 4 months ago

πŸ—£ Description

πŸ’­ Motivation and context

More security visibility on the network through windows event logs and dashboards that curate the new information.

πŸ§ͺ Testing

βœ… Pre-approval checklist

βœ… Pre-merge Checklist

βœ… Post-merge Checklist

rgbrow1949 commented 4 months ago

Note: lme_wec_config.xml file needs testing. It's not forwarding logs from the client to the DC. I'll work on fixing it but for now this PR is not merge-ready.

rgbrow1949 commented 4 months ago

Bugs with the lme_wec_config.xml file are fixed. This PR is ready for final review and approval.

cbaxley commented 3 months ago

We need to figure out what we need to do to make upgrades work.