Integration with osquery

75 views
Skip to first unread message

wgree...@gmail.com

unread,
Mar 10, 2024, 3:05:16 PM3/10/24
to Wazuh | Mailing List
I am currently using the docker compose wazuh stack and would like to start using osquery. My question is how do I install osquery on the wazuh manager. The wazuh manager is in a container. I am certain I dont have a complete understanding of this and any assistance will be greatly appreciated.

Thank You

elw...@wazuh.com

unread,
Mar 11, 2024, 8:15:02 AM3/11/24
to Wazuh | Mailing List
Hello,

You will need to build a custom docker image to include it in your stack, However, the integration with osquery is not maintained as its capability is replaced by the native Wazuh module SCA https://documentation.wazuh.com/current/user-manual/capabilities/sec-config-assessment/index.html which you can use instead.

I hope it helps.

Regards,
Wali
Reply all
Reply to author
Forward
0 new messages