• We had to restore from a backup today after a failed software update. Backup was from 0000 EDT and restored it at 0800 EDT so we lost about 8hrs. Today is 07/20/2024. More info here.

Centralized management system?

What centralized management system do you use?

  • OSSIM

    Votes: 0 0.0%
  • OSSEC Web UI

    Votes: 0 0.0%
  • Network Security Toolkit

    Votes: 0 0.0%
  • Other (please specify)

    Votes: 0 0.0%

  • Total voters
    0
E

ehansen

Guest
Which centralized management system do you use? By this I mean systems like OSSIM, OSSEC WUI, etc... (to a lesser extent Nagios).

I use OSSEC WUI mostly but I've tinkered with OSSIM and love it so far. I'm also looking for a solution that's basically OSSIM, but isn't its own distro and is also free.
 


Does the ossec one make you log into each server to view info or can you set up a central one that grabs info from all of them?
 
Does the ossec one make you log into each server to view info or can you set up a central one that grabs info from all of them?
Kind of no and no, but yes at the same time. No, you don't log into each server, but it doesn't graph either (as far as I've seen). You access it from a local address, and it displays recent file activity (OSSEC is a file integrity tool at heart), and you can also browse all the hashes and files its monitoring.

Yes as in its a centralized management for file integrity, so you can view all the files by any sensor/agent.
 


Top