Wazuh is a free, open-source security platform offering unified SIEM and XDR capabilities for endpoint and cloud workload protection. The platform consists of four main components: Wazuh Indexer for storing alerts, Wazuh Server for data analysis and agent management, Wazuh Dashboard for visualization, and Wazuh Agents for endpoint protection. The setup process involves installing the server on Ubuntu using a single script command, configuring agents through the web interface, and deploying agents on target systems using generated commands.
1 Comment
Sort: