Skip to content

RedBlue232/wazuh-snoopy-rules-decoders

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

6 Commits
 
 
 
 
 
 

Repository files navigation

wazuh-snoopy-rules-decoders

Hello, here are some decoders (at least 7) and one rule that can be used with the Snoopy Command Logger.

Installation

  1. Copy the decoders and rules to your Wazuh Manager

Copy 0751-snoopy_decoders.xml to /var/ossec/etc/decoders/

Copy 0751-snoopy_rules.xml to /var/ossec/etc/rules/

  1. Restart Wazuh Manager systemctl restart wazuh-manager

  2. Check for service failure systemctl status wazuh-manager

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published