OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.
翻译 - OSSEC是基于开源主机的入侵检测系统,它执行日志分析,文件完整性检查,策略监视,rootkit检测,实时警报和主动响应。
Wazuh - Docker containers
翻译 - Wazuh - Docker containers
Plugins for Wazuh Dashboard
Wazuh - Project documentation
FIM is an Open Source Host-based file integrity monitoring tool that performs file system analysis, file integrity checking, real time alerting and provides Audit daemon data.
Wazuh - Tools for packages creation
A Ruleset to enhance detection capabilities of Ossec using Sysmon
WAZUH - The Open Source Security Platform Installation
Development repository for the ossec cookbook
Wazuh - Amazon AWS Cloudformation
Installing and maintaining the ossec-server for RedHat/Debian/Ubuntu.
Official OSSEC docker container