I would like to integrate threat intelligence with wazuh. How can I do that.
what are the ways to archive this ?
I have deployed the hive , cortex and MISP for threat intelligence but do not know how to integrate with wazuh. Can some one please help if they know how to do this.
I am not sure we directly have a lot of experience with wazuh doing this, but there may be community members that have it that can hopefully share something.
Is there a reason you aren't using Elastic Security to do this?
OpenSearch/OpenDistro are AWS run products and differ from the original Elasticsearch and Kibana products that Elastic builds and maintains. You may need to contact them directly for further assistance.
(This is an automated response from your friendly Elastic bot. Please report this post if you have any suggestions or concerns )
The Wazuh Distribution uses Opensearch, which is a fork of an old version of Elasticsearch, version 7.10.
Opensearch is not supported here as it has a lot of changes made mainly by Amazon, you will need to direct your question to a Wazuh forum or an Opensearch forum.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.