Wazuh Storage Schema

71 views
Skip to first unread message

Victor Silva

unread,
Jun 30, 2022, 12:13:03 PM6/30/22
to Wazuh mailing list
Hi,

My team and I are trying to figure out a way to store outside of the Wazuh Manager all alerts and non-alerts events. I've attached a screenshot of what we're trying to achieve. It'll probably make it easier to understand.

So basically the indexer would send the compressed data to an AWS S3. Then, whenever that data needed to be accessed, the Wazuh-Dashboard would collect straight from the AWS S3 and display it on the original linux machine where it's installed.

Is there any way it can be done?

Thanks,
Victor Silva.
MicrosoftTeams-image (1).png

Vitor Souza

unread,
Jun 30, 2022, 1:27:58 PM6/30/22
to Wazuh mailing list
I have the same doubt
Reply all
Reply to author
Forward
0 new messages