J J Sloan
unread,Mar 27, 2021, 5:45:33 PM3/27/21Sign in to reply to author
Sign in to forward
You do not have permission to delete messages in this group
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to Wazuh mailing list
I installed wazuh on my home network to verify it was a superset of ossec, and indeed that is the case. I also installed osquery on all client machines, and then osquery appeared in the "Threat detection and response" widget on the wazuh console.
So then I replaced ossec with wazuh in a different environment, but for some reason the osquery display is missing.
Both installs used the single node unattended installation script, and the target OS is centos 8 in both cases.
The only difference I can find is the initial version of wazuh which was installed in each case; the working version was 4.1.1 at install, and I think the one which is missing osquery was 4.1.2 at install. Both are now at 4.1.4, yet the difference persists.
What could I be missing?
J J