Linux based IDS devices, SecurityOnion

TAH 20 Reputation points
2024-10-29T03:50:37.8533333+00:00

Hi all

we have a Linux based IDS devices, SecurityOnion, which have been onboarded to the production Service. There are currently OS based Analytic rules enabled in Sentinel but nothing for the IDS itself.

  1. Are there any plugin or agents that can be used, possibly similar to AMA agent, that can be used?
Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
3,645 questions
0 comments No comments
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.