I am considering to try out ELK siem with audit logs but it appears the source of the audit logs has to be through auditbeat daemon provided by ELK, but i have my own daemon with additional functionalities that i need to solve some of the challenges that my environment brings in, so i have to be able to use my own daemon for this set up.
I was wondering if it is it possible for me to use my own daemon as a log source instead of auditbeat.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.