Hello Team,
We have Wazuh alerts.json log files archived in an Amazon S3 bucket, organized by date. We would like to restore these historical logs and make them visible in the Wazuh Dashboard for analysis and reporting purposes.
Could you please guide us on the recommended approach to import the archived alerts.json files from the S3 bucket into Wazuh/OpenSearch so that the events become searchable and accessible through the Wazuh Dashboard?
Specifically, we would like to understand:
Our objective is to restore historical Wazuh alerts stored in S3 and make them available in the Wazuh Dashboard for investigation and reporting.
We would appreciate your guidance on the process.
Regards,
xeption