Wazuh - Kibana plugin
Go to file
2018-11-20 13:42:31 +01:00
public Right side help menu more narrow and elegant 2018-11-20 13:42:31 +01:00
server Merge pull request #1019 from wazuh/issue-1003 2018-11-15 09:42:11 +01:00
test/server Yarn prettier executed 2018-11-02 18:23:00 +01:00
util Dynamic known fields for wazuh-monitoring. Fix manager field 2018-10-09 12:00:02 +02:00
.eslintignore Added prettier as dev dependency, improved package scripts 2018-09-10 10:36:24 +02:00
.eslintrc.json Code quality(eslint, mocha, tslint) 2018-09-03 11:46:55 +02:00
.gitignore Added more dev dependencies, added node as engine 2018-08-27 08:34:59 +02:00
.kibana-plugin-helpers.json Added LICENSE for building package 2018-08-24 17:27:10 +02:00
.tslint.yml Code quality(eslint, mocha, tslint) 2018-09-03 11:46:55 +02:00
CHANGELOG.md Update CHANGELOG 2018-11-15 16:30:12 +01:00
config.yml Fix admin mode condition 2018-11-15 09:39:12 +01:00
index.js Using pug 2018-11-12 11:04:46 +01:00
init.js Using new needed method named awaitMigration() before init the Wazuh app 2018-11-15 11:48:57 +01:00
LICENSE Update LICENSE 2018-04-22 18:56:55 +02:00
package.json Update README.md, package.json 2018-11-13 17:30:47 +01:00
README.md Update README.md, package.json 2018-11-13 17:30:47 +01:00
STYLEGUIDE.md Added styleguide 2018-09-12 11:37:49 +02:00
tsconfig.json Added compilerOptions 2018-08-27 09:15:02 +02:00

Wazuh Kibana App

Slack Email Documentation Documentation

Wazuh is a security detection, visibility, and compliance open source project. It was born as a fork of OSSEC HIDS, later was integrated with Elastic Stack and OpenSCAP evolving into a more comprehensive solution. You can read more in https://wazuh.com/

Description

Visualize and analyze Wazuh alerts stored in Elasticsearch using our Kibana app plugin.

  • Obtain statistics per agent, search alerts and filter by using the different visualizations.
  • View the Wazuh manager configuration.
  • File integrity monitoring.

Documentation

Overview

Requisites

  • Wazuh HIDS 3.7.0
  • Wazuh RESTful API 3.7.0
  • Kibana 6.5.0
  • Elasticsearch 6.5.0

Installation

Install the app

sudo -u kibana NODE_OPTIONS="--max-old-space-size=3072" /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.7.0_6.5.0.zip

Restart Kibana

  • Systemd:
systemctl restart kibana
  • SysV Init:
service kibana restart

Upgrade

Stop Kibana

  • Systemd:
systemctl stop kibana
  • SysV Init:
service kibana stop

Remove the app using kibana-plugin tool

/usr/share/kibana/bin/kibana-plugin remove wazuh

Remove generated bundles

rm -rf /usr/share/kibana/optimize/bundles

Update file permissions. This will avoid several errors prior to updating the app:

chown -R kibana:kibana /usr/share/kibana/optimize
chown -R kibana:kibana /usr/share/kibana/plugins

Install the app

sudo -u kibana NODE_OPTIONS="--max-old-space-size=3072" /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.7.0_6.5.0.zip

Restart Kibana

  • Systemd:
systemctl restart kibana
  • SysV Init:
service kibana restart

Older packages

Kibana version Wazuh app version Installation
6.0.0 3.0.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.0.0_6.0.0.zip
6.0.1 3.0.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.0.0_6.0.1.zip
6.1.0 3.0.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.0.0_6.1.0.zip
6.1.0 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.0.zip
6.1.1 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.1.zip
6.1.2 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.2.zip
6.1.3 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.3.zip
6.1.0 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.0.zip
6.1.1 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.1.zip
6.1.2 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.2.zip
6.1.3 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.3.zip
6.2.0 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.2.0.zip
6.2.1 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.2.1.zip
6.2.2 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.2.2.zip
6.2.2 3.2.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.1_6.2.2.zip
6.2.3 3.2.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.1_6.2.3.zip
6.2.4 3.2.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.1_6.2.4.zip
6.2.4 3.2.2 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.2_6.2.4.zip
6.2.4 3.2.3 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.3_6.2.4.zip
6.2.4 3.2.4 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.4_6.2.4.zip
6.2.4 3.3.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.0_6.2.4.zip
6.2.4 3.3.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.1_6.2.4.zip
6.3.0 3.3.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.0_6.3.0.zip
6.3.0 3.3.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.1_6.3.0.zip
6.3.1 3.3.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.1_6.3.1.zip
6.3.1 3.4.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.4.0_6.3.1.zip
6.3.2 3.4.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.4.0_6.3.2.zip
6.3.2 3.5.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.5.0_6.3.2.zip
6.4.0 3.5.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.5.0_6.4.0.zip
6.3.2 3.6.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.0_6.3.2.zip
6.4.0 3.6.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.0_6.4.0.zip
6.3.2 3.6.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.1_6.3.2.zip
6.4.0 3.6.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.1_6.4.0.zip
6.4.1 3.6.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.1_6.4.1.zip
6.4.2 3.6.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.1_6.4.2.zip
6.4.3 3.6.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.1_6.4.3.zip
6.4.2 3.7.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.7.0_6.4.2.zip
6.4.3 3.7.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.7.0_6.4.3.zip
6.5.0 3.7.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.7.0_6.5.0.zip

Contribute

If you want to contribute to our project please don't hesitate to send a pull request. You can also join our users mailing list, by sending an email to mailto:wazuh+subscribe@googlegroups.com, to ask questions and participate in discussions.

Software and libraries used

Copyright © 2018 Wazuh, Inc.

This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; either version 2 of the License, or (at your option) any later version.

Find more information about this on the LICENSE file.