Wazuh - Kibana plugin
Go to file
2018-08-20 09:00:50 +02:00
public Using ES6 class 2018-08-20 09:00:50 +02:00
server Using ES6 class 2018-08-20 09:00:50 +02:00
util Fix typo 2018-08-09 13:12:44 +02:00
.eslintrc.json Updated eslint rules 2018-07-26 17:24:11 +02:00
.gitignore Ignoring package-lock 2018-05-29 13:35:43 +02:00
CHANGELOG.md Merge branch '3.5-6.3' into 3.5-update-changelog 2018-08-02 14:02:50 +02:00
config.yml Removed old login config 2018-06-28 18:22:34 +02:00
index.js Adapting to Kibana 6.3.0 (in progress) 2018-06-17 22:48:21 +02:00
init.js Added reporting routes 2018-06-28 16:08:24 +02:00
LICENSE Update LICENSE 2018-04-22 18:56:55 +02:00
package.json Bump revision and adding package link 2018-08-09 12:52:16 -04:00
README.md Fix version typo 2018-08-16 13:51:14 +02:00

Wazuh Kibana App

Slack Email Documentation Documentation

Wazuh is a security detection, visibility, and compliance open source project. It was born as a fork of OSSEC HIDS, later was integrated with Elastic Stack and OpenSCAP evolving into a more comprehensive solution. You can read more in https://wazuh.com/

Description

Visualize and analyze Wazuh alerts stored in Elasticsearch using our Kibana app plugin.

  • Obtain statistics per agent, search alerts and filter by using the different visualizations.
  • View the Wazuh manager configuration.
  • File integrity monitoring.

Documentation

Overview

Requisites

  • Wazuh HIDS 3.5.0
  • Wazuh RESTful API 3.5.0
  • Kibana 6.3.2
  • Elasticsearch 6.3.2

Installation

Install the app

/usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.5.0_6.3.2.zip

Restart Kibana

  • Systemd:
systemctl restart kibana
  • SysV Init:
service kibana restart

Upgrade

Stop Kibana

  • Systemd:
systemctl stop kibana
  • SysV Init:
service kibana stop

Remove the app using kibana-plugin tool

/usr/share/kibana/bin/kibana-plugin remove wazuh

Remove generated bundles

rm -rf /usr/share/kibana/optimize/bundles

Install the app

/usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.x.x_6.x.x.zip

Restart Kibana

  • Systemd:
systemctl restart kibana
  • SysV Init:
service kibana restart

Older packages

Kibana version Wazuh app version Installation
6.0.0 3.0.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.0.0_6.0.0.zip
6.0.1 3.0.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.0.0_6.0.1.zip
6.1.0 3.0.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.0.0_6.1.0.zip
6.1.0 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.0.zip
6.1.1 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.1.zip
6.1.2 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.2.zip
6.1.3 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.3.zip
6.1.0 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.0.zip
6.1.1 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.1.zip
6.1.2 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.2.zip
6.1.3 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.3.zip
6.2.0 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.2.0.zip
6.2.1 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.2.1.zip
6.2.2 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.2.2.zip
6.2.2 3.2.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.1_6.2.2.zip
6.2.3 3.2.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.1_6.2.3.zip
6.2.4 3.2.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.1_6.2.4.zip
6.2.4 3.2.2 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.2_6.2.4.zip
6.2.4 3.2.3 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.3_6.2.4.zip
6.2.4 3.2.4 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.4_6.2.4.zip
6.2.4 3.3.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.0_6.2.4.zip
6.2.4 3.3.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.1_6.2.4.zip
6.3.0 3.3.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.0_6.3.0.zip
6.3.0 3.3.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.1_6.3.0.zip
6.3.1 3.3.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.1_6.3.1.zip
6.3.1 3.4.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.4.0_6.3.1.zip
6.3.2 3.4.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.4.0_6.3.2.zip
6.3.2 3.5.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.5.0_6.3.2.zip

Contribute

If you want to contribute to our project please don't hesitate to send a pull request. You can also join our users mailing list, by sending an email to mailto:wazuh+subscribe@googlegroups.com, to ask questions and participate in discussions.

Software and libraries used

Copyright © 2018 Wazuh, Inc.

This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; either version 2 of the License, or (at your option) any later version.

Find more information about this on the LICENSE file.