#DevOps #SecDevOps #CyberSecurity #LogAnalytics #Elasticsearch #elk #elk stack #auditbeat #auditlinuxsystem #auditbeattutorial
Hey Guys
Welcome to this auditbeat tutorial for beginners. In this lecture, i will show you how you can monitor user activity and processes, and analyse your event data in the Elastic Stack without touching auditd using auditbeat a light weight shipper in elastic stack.I will demonstrate how to install and configure audit beat elk stack 7.x.
This video is part of a playlist where I will demonstrate how to automate the deployment of ELK Stack (Elasticsearch, Logstash and Kibana ) and Beats( Heartbeat, Metric Beat, Packet beat, File Beat etc) using Ansible
I will also demonstrate how to install and configure various elastic beats in this series so please subscribe to my channel.
We will use Google cloud platform to host our VMs. GCP provides $300 in free trial credits which we will use to host our lab environment.
Link to Playlist: • Elasticsearch Automation with Ansible...
Git repository for this playlist
https://gitlab.com/LabIT/elasticsearc...
Configuration file used in this lecture
https://gitlab.com/LabIT/elasticsearc...
Note: There is a little type at 15:29 when i configure the url for auditbeat inside beat-xpack , i mistyped http. correct url http://localhost:5068.
Elasticsearch
Elasticsearch is a distributed, RESTful search and analytics engine capable of addressing a growing number of use cases. As the heart of the Elastic Stack, it centrally stores your data for lightning fast search, fine‑tuned relevancy, and powerful analytics that scale with ease.
Ansible
Ansible is an IT automation tool. It can configure systems, deploy software, and orchestrate more advanced IT tasks such as continuous deployments or zero downtime rolling updates.
Please Like my video and subscribe to my channel and leave your comments.