Wazuh - Kibana plugin
Go to file
Jesús Ángel ecebbdf616
Merge pull request #983 from wazuh/fix-node-name
Replaced 'node' by 'node_name' for the agent list
2018-10-24 16:02:53 +02:00
public Fix typo 2018-10-24 15:59:19 +02:00
server Refactor Promise.all output 2018-10-22 16:51:20 +02:00
test/server Fix index name, added elastic ip env variable 2018-10-01 10:28:51 +02:00
util Dynamic known fields for wazuh-monitoring. Fix manager field 2018-10-09 12:00:02 +02:00
.eslintignore Added prettier as dev dependency, improved package scripts 2018-09-10 10:36:24 +02:00
.eslintrc.json Code quality(eslint, mocha, tslint) 2018-09-03 11:46:55 +02:00
.gitignore Added more dev dependencies, added node as engine 2018-08-27 08:34:59 +02:00
.kibana-plugin-helpers.json Added LICENSE for building package 2018-08-24 17:27:10 +02:00
.tslint.yml Code quality(eslint, mocha, tslint) 2018-09-03 11:46:55 +02:00
CHANGELOG.md Merge pull request #980 from wazuh/logs-multinode 2018-10-24 13:44:18 +02:00
config.yml Added ip.ignore setting 2018-10-05 15:10:59 +02:00
index.js Prettify executed 2018-09-11 11:54:48 +02:00
init.js Renamed all server routes 2018-10-01 10:12:07 +02:00
LICENSE Update LICENSE 2018-04-22 18:56:55 +02:00
package.json Bump revision 2018-10-03 18:01:29 +02:00
README.md Update README.md 2018-10-17 11:59:18 +02:00
STYLEGUIDE.md Added styleguide 2018-09-11 12:29:29 +02:00
tsconfig.json Added compilerOptions 2018-08-27 09:15:02 +02:00

Wazuh Kibana App

Slack Email Documentation Documentation

Wazuh is a security detection, visibility, and compliance open source project. It was born as a fork of OSSEC HIDS, later was integrated with Elastic Stack and OpenSCAP evolving into a more comprehensive solution. You can read more in https://wazuh.com/

Description

Visualize and analyze Wazuh alerts stored in Elasticsearch using our Kibana app plugin.

  • Obtain statistics per agent, search alerts and filter by using the different visualizations.
  • View the Wazuh manager configuration.
  • File integrity monitoring.

Documentation

Overview

Requisites

  • Wazuh HIDS 3.7.0
  • Wazuh RESTful API 3.7.0
  • Kibana 6.4.2
  • Elasticsearch 6.4.2

Installation

Install the app

sudo -u kibana /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.7.0_6.4.2.zip

Restart Kibana

  • Systemd:
systemctl restart kibana
  • SysV Init:
service kibana restart

Upgrade

Stop Kibana

  • Systemd:
systemctl stop kibana
  • SysV Init:
service kibana stop

Remove the app using kibana-plugin tool

/usr/share/kibana/bin/kibana-plugin remove wazuh

Remove generated bundles

rm -rf /usr/share/kibana/optimize/bundles

Update file permissions. This will avoid several errors prior to updating the app:

chown -R kibana:kibana /usr/share/kibana/optimize
chown -R kibana:kibana /usr/share/kibana/plugins

Install the app

sudo -u kibana /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.7.0_6.4.2.zip

Restart Kibana

  • Systemd:
systemctl restart kibana
  • SysV Init:
service kibana restart

Older packages

Kibana version Wazuh app version Installation
6.0.0 3.0.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.0.0_6.0.0.zip
6.0.1 3.0.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.0.0_6.0.1.zip
6.1.0 3.0.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.0.0_6.1.0.zip
6.1.0 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.0.zip
6.1.1 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.1.zip
6.1.2 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.2.zip
6.1.3 3.1.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.3.zip
6.1.0 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.0.zip
6.1.1 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.1.zip
6.1.2 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.2.zip
6.1.3 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.1.3.zip
6.2.0 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.2.0.zip
6.2.1 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.2.1.zip
6.2.2 3.2.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.0_6.2.2.zip
6.2.2 3.2.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.1_6.2.2.zip
6.2.3 3.2.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.1_6.2.3.zip
6.2.4 3.2.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.1_6.2.4.zip
6.2.4 3.2.2 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.2_6.2.4.zip
6.2.4 3.2.3 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.3_6.2.4.zip
6.2.4 3.2.4 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.2.4_6.2.4.zip
6.2.4 3.3.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.0_6.2.4.zip
6.2.4 3.3.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.1_6.2.4.zip
6.3.0 3.3.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.0_6.3.0.zip
6.3.0 3.3.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.1_6.3.0.zip
6.3.1 3.3.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.3.1_6.3.1.zip
6.3.1 3.4.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.4.0_6.3.1.zip
6.3.2 3.4.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.4.0_6.3.2.zip
6.3.2 3.5.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.5.0_6.3.2.zip
6.4.0 3.5.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.5.0_6.4.0.zip
6.3.2 3.6.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.0_6.3.2.zip
6.4.0 3.6.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.0_6.4.0.zip
6.3.2 3.6.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.1_6.3.2.zip
6.4.0 3.6.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.1_6.4.0.zip
6.4.1 3.6.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.1_6.4.1.zip
6.4.2 3.6.1 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.6.1_6.4.2.zip
6.4.2 3.7.0 /usr/share/kibana/bin/kibana-plugin install https://packages.wazuh.com/wazuhapp/wazuhapp-3.7.0_6.4.2.zip

Contribute

If you want to contribute to our project please don't hesitate to send a pull request. You can also join our users mailing list, by sending an email to mailto:wazuh+subscribe@googlegroups.com, to ask questions and participate in discussions.

Software and libraries used

Copyright © 2018 Wazuh, Inc.

This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; either version 2 of the License, or (at your option) any later version.

Find more information about this on the LICENSE file.