Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Added wazuh-syscheckd as a file integrity monitoring capability #1320

Closed
wants to merge 1 commit into from

Conversation

zbalkan
Copy link
Contributor

@zbalkan zbalkan commented Aug 5, 2022

As mentioned in #1319, Wazuh is a fork of OSSEC and is being actively maintained. Wazuh agent has capabilities to check file integrity by default. File integrity -and Registry integrity for Windows- capabilities are based on a daemon called wazuh-syscheckd. It runs when syscheck configuration is set up on the agents.

Therefore, it seems feasible to add Wazuh to the accepted logging products. Current capabilities satisfy test FINT-4350.

https://documentation.wazuh.com/current/user-manual/capabilities/log-data-collection/
https://documentation.wazuh.com/current/pci-dss/log-analysis.html

@zbalkan
Copy link
Contributor Author

zbalkan commented Apr 28, 2023

May I request a review on this PR?

@mboelen mboelen self-assigned this May 14, 2024
@mboelen
Copy link
Member

mboelen commented May 14, 2024

Due to other pull request, the specific test was already included. So closing this one.

Thanks @zbalkan

@mboelen mboelen closed this May 14, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants