Groups
Groups
Sign in
Groups
Groups
Wazuh | Mailing List
Conversations
About
Send feedback
Help
Wazuh | Mailing List
Contact owners and managers
1–30 of 16179
Welcome to Wazuh mailing list. Our team will be happy to answer and help with all your questions.
We look forward to your feedback and contributions.
Mark all as read
Report group
0 selected
Bitemir Myrzash
7:03 AM
shuffle integration
I am trying to automate SOC processes using Shuffle, and for this purpose I am using webhooks and the
unread,
shuffle integration
I am trying to automate SOC processes using Shuffle, and for this purpose I am using webhooks and the
7:03 AM
john
,
Md. Nazmur Sakib
10
7:03 AM
RequestError: Error fetching items
Hello Again, issue was fixed after restart these services: root@wazuh:/var/ossec/etc# /var/ossec/bin/
unread,
RequestError: Error fetching items
Hello Again, issue was fixed after restart these services: root@wazuh:/var/ossec/etc# /var/ossec/bin/
7:03 AM
Yazid
,
Richmond Aribibia Fimie
3
7:03 AM
Wazuh / Symentec Integration
Symantec has three types of syslog, and I tried them. Here is an example of each: RFC 5424 with
unread,
Wazuh / Symentec Integration
Symantec has three types of syslog, and I tried them. Here is an example of each: RFC 5424 with
7:03 AM
Amin
,
musbau....@wazuh.com
4
7:00 AM
Wazuh SSO Admin and Readonly Group
Hi Amin, You should use the App Role value, not the display name. regards, On Monday, January 12,
unread,
Wazuh SSO Admin and Readonly Group
Hi Amin, You should use the App Role value, not the display name. regards, On Monday, January 12,
7:00 AM
никита какдела
,
Jorge Eduardo Molas
4
6:32 AM
Wazuh eventchannel events
Notice: The custom rule described above can be set by either overwriting the original rule or by
unread,
Wazuh eventchannel events
Notice: The custom rule described above can be set by either overwriting the original rule or by
6:32 AM
Veera
6:29 AM
fim.db management
Hi, While configuring FIM to scan a few NFS volumes, the FIM database gets created as expected.
unread,
fim.db management
Hi, While configuring FIM to scan a few NFS volumes, the FIM database gets created as expected.
6:29 AM
Veera
6:12 AM
FIM events fro NFS not reporting
Hi Team, We have enabled Syscheck/FIM monitoring for NFS filesystems with realtime=no and have been
unread,
FIM events fro NFS not reporting
Hi Team, We have enabled Syscheck/FIM monitoring for NFS filesystems with realtime=no and have been
6:12 AM
Muhammad Ali Khan
,
Stuti Gupta
4
5:44 AM
Indexer Storage Usage Increasing in Wazuh
Hi Muhammad Ali You need to do all these steps to resolve the storage issue. First, start by deleting
unread,
Indexer Storage Usage Increasing in Wazuh
Hi Muhammad Ali You need to do all these steps to resolve the storage issue. First, start by deleting
5:44 AM
Joaquim António
,
Isaiah Daboh
4
5:18 AM
Can't get ms-graph to obtain logs
Hello, Thank you for your help! The logs now show up in archives.log, but they are not in the
unread,
Can't get ms-graph to obtain logs
Hello, Thank you for your help! The logs now show up in archives.log, but they are not in the
5:18 AM
Sergio
,
Antonio David Gutiérrez
2
5:13 AM
wazuh-analysisd crashing randomly after hot reloading
Hi, it seems the problem could be difficult to debug if this is not reproducible in a consistent way.
unread,
wazuh-analysisd crashing randomly after hot reloading
Hi, it seems the problem could be difficult to debug if this is not reproducible in a consistent way.
5:13 AM
никита какдела
,
Md. Nazmur Sakib
4
4:48 AM
New SCA policies
You can upgrade your agent's to get the updated policies after the update. But please keep in
unread,
New SCA policies
You can upgrade your agent's to get the updated policies after the update. But please keep in
4:48 AM
Leo J
,
Othniel Ebolum
3
4:37 AM
help me Wazuh
Hello Thank you for your reply. I'm beginner to Amazon linux 2023, can you please kindly let me
unread,
help me Wazuh
Hello Thank you for your reply. I'm beginner to Amazon linux 2023, can you please kindly let me
4:37 AM
Arjun P
, …
hasitha.u...@wazuh.com
5
4:37 AM
Help me find the alerts tab on wazuh
Hi Hasitha, Is there any way we can get this wazuh alert dashboard on wazuh? As the plugin you stated
unread,
Help me find the alerts tab on wazuh
Hi Hasitha, Is there any way we can get this wazuh alert dashboard on wazuh? As the plugin you stated
4:37 AM
Robby Hunters
,
Bony V John
3
4:05 AM
Next steps after Wazuh installation and agent onboarding
Hi, Based on your questions, please find the recommendations below. For tuning the Wazuh server to
unread,
Next steps after Wazuh installation and agent onboarding
Hi, Based on your questions, please find the recommendations below. For tuning the Wazuh server to
4:05 AM
Jack Martin
,
Md. Nazmur Sakib
2
3:43 AM
Cleartext Credential Exposure sca police
Hi Jack, You can share the SCA yml policy file from the manager to the agent's endpoints and use
unread,
Cleartext Credential Exposure sca police
Hi Jack, You can share the SCA yml policy file from the manager to the agent's endpoints and use
3:43 AM
WiFi
,
fabio.c...@wazuh.com
3
2:26 AM
Dashboard response error
Hello! Thanks for the quick reply. 1. root@indexer:/home/oib_user# systemctl status wazuh-indexer ●
unread,
Dashboard response error
Hello! Thanks for the quick reply. 1. root@indexer:/home/oib_user# systemctl status wazuh-indexer ●
2:26 AM
Ricardo Barros
,
Bony V John
3
2:00 AM
How to Add a Custom Description to Logs Based on File Location Using Rules?
Hi, If you want a specific rule description when the location field value is /var/prod-prod, you need
unread,
How to Add a Custom Description to Logs Based on File Location Using Rules?
Hi, If you want a specific rule description when the location field value is /var/prod-prod, you need
2:00 AM
doc dodo
, …
Matías Mercado
6
Jan 12
custom SCA for windows
Hello jackma...@gmail.com Yes, this approach is valid and it fits well with Wazuh capabilities.
unread,
custom SCA for windows
Hello jackma...@gmail.com Yes, this approach is valid and it fits well with Wazuh capabilities.
Jan 12
Prince
,
Javier Adán Méndez Méndez
2
Jan 12
Help needed: Disk usage alerting across multiple agents with ignore/frequency rules
Hi Scope the correlation to the agent/location by adding <same_location /> to each “high usage”
unread,
Help needed: Disk usage alerting across multiple agents with ignore/frequency rules
Hi Scope the correlation to the agent/location by adding <same_location /> to each “high usage”
Jan 12
Brenno Garcia
,
Nicolai Romero
2
Jan 12
Wazuh Dashboard
Hi Brenno, The recommended approach to create data visualizations for alert data is to use the Custom
unread,
Wazuh Dashboard
Hi Brenno, The recommended approach to create data visualizations for alert data is to use the Custom
Jan 12
Muhammad Ali Khan
,
Joaquin Romera
2
Jan 12
Unexpected Wazuh Indexer Disk Growth with Vulnerability Detection Enabled
Hi Muhammad, I will forward your question to the Indexer team and get back to you as soon as possible
unread,
Unexpected Wazuh Indexer Disk Growth with Vulnerability Detection Enabled
Hi Muhammad, I will forward your question to the Indexer team and get back to you as soon as possible
Jan 12
Chi Bùi Quỳnh
, …
avkby445h 24
5
Jan 12
Best approach to collect network device syslog in Wazuh (Healthcare environment)
Hello Chi Bùi Quỳnh To add: I have the same exact setup for over 1 year now with double the VMs you
unread,
Best approach to collect network device syslog in Wazuh (Healthcare environment)
Hello Chi Bùi Quỳnh To add: I have the same exact setup for over 1 year now with double the VMs you
Jan 12
Mohand-said Chalal
,
Diego Cappri
2
Jan 12
Wazuh Migration
Hi Mohand, this is the official documentation for backup/restore: https://documentation.wazuh.com/
unread,
Wazuh Migration
Hi Mohand, this is the official documentation for backup/restore: https://documentation.wazuh.com/
Jan 12
Narasimha Naidu B
,
Bony V John
4
Jan 12
Request for PowerShell Script for YARA Deployment
Hi Bony, We are still waiting for your support to complete the YARA integration.Please let us know
unread,
Request for PowerShell Script for YARA Deployment
Hi Bony, We are still waiting for your support to complete the YARA integration.Please let us know
Jan 12
m mun
, …
Pablo Moliz Arias
23
Jan 12
Alerts and Archives logs doesn't appear on dashboard and indexes
Hi, Thankyou for the suggestions, currently the replicas are already set to 0. I have deleted
unread,
Alerts and Archives logs doesn't appear on dashboard and indexes
Hi, Thankyou for the suggestions, currently the replicas are already set to 0. I have deleted
Jan 12
Max
, …
saurav shukla
8
Jan 12
Vulnerability Detection 4.14.1
everything look like this but still no vulnerability is showing <vulnerability-detection> <
unread,
Vulnerability Detection 4.14.1
everything look like this but still no vulnerability is showing <vulnerability-detection> <
Jan 12
Franck Ehret
,
Stuti Gupta
8
Jan 12
Missing events (filebeat service crash)
This issue could be related to the operating system. While AlmaLinux is officially supported for the
unread,
Missing events (filebeat service crash)
This issue could be related to the operating system. While AlmaLinux is officially supported for the
Jan 12
doc dodo
,
Stuti Gupta
7
Jan 12
wazuh-authd: WARNING: Duplicate name
Hello, I figured out the problem. On worker node wazuh-analysisd not running... Apparently, the agent
unread,
wazuh-authd: WARNING: Duplicate name
Hello, I figured out the problem. On worker node wazuh-analysisd not running... Apparently, the agent
Jan 12
Rahul Manoj
,
Sandip Aryal
3
Jan 12
office365 log duplication
Hi Rahul, Your configuration appears to be correct, as outlined here: To check if log duplication is
unread,
office365 log duplication
Hi Rahul, Your configuration appears to be correct, as outlined here: To check if log duplication is
Jan 12
Veera
,
Himanshu Sharma
6
Jan 12
ossec: Real-time inotify kernel queue is full.
Thanks, Himanshu. This helped a lot. As a follow-up to the above questions (sorry to piggyback on the
unread,
ossec: Real-time inotify kernel queue is full.
Thanks, Himanshu. This helped a lot. As a follow-up to the above questions (sorry to piggyback on the
Jan 12