concretesubmarine.com/ FORUM

Members Login
Username 
 
Password 
    Remember Me  
Post Info TOPIC: Hello - we have a client with Tableau Linux Servers, from a cybersecurity aspect we are looking to ingest logs from the


Senior Member

Status: Offline
Posts: 244
Date:
Hello - we have a client with Tableau Linux Servers, from a cybersecurity aspect we are looking to ingest logs from the
Permalink   
 


Can anyone advise which log would have things like admin deleted user or login failed, data exfiltration type events, failed access, file with malware etc. and is there a doc which lists all the event types or codes and meanings. Any guidance on this would be appreciated.



__________________


Senior Member

Status: Offline
Posts: 157
Date:
Permalink   
 

For events like admin activities, login failures, and data exfiltration, focus on Linux system logs (/var/log/auth.log). As for a comprehensive doc, I like clearedsystems.com as they often share resources on cybersecurity. Check there for detailed insights.



-- Edited by SaymonSax on Friday 2nd of February 2024 12:06:07 PM

__________________
Page 1 of 1  sorted by
 
Quick Reply

Please log in to post quick replies.



Create your own FREE Forum
Report Abuse
Powered by ActiveBoard