linux/system-logs Dashboards
Linux - Auditd
Widget | Description | Type |
---|---|---|
Event Results |
Displays a chart of audited event results.
logscale
| Time Chart |
Top 5 Users (Events) |
Displays a table of the top 5 system users and events using
audited event data.
logscale
| Table |
Event Types Descriptions | logscale
| Table |
Top 10 Exec Commands |
Displays a list of the top ten audited executive commands.
logscale
| Table |
Event Types Breakdown |
Provides a pie chart of event types using audit data.
logscale
| Pie Chart |
Number of Events (by host) |
Displays a chart of the number of events by host and limits
results to the first 10 entries.
logscale
| Time Chart |
Linux - General
Widget | Description | Type |
---|---|---|
Number of Linux Hosts |
Displays the total number of Linux hosts.
logscale
| Gauge |
Number of System Events | logscale
| Gauge |
Number of Auditd Events |
Displays the number of audited events for a given user.
logscale
| Gauge |
Number of User Modifications |
Displays the number of user modifications from audit data.
logscale
| Gauge |
Latest User Modifications |
Displays a table of a user's latest modifications using audit
data.
logscale
| Table |
Events by Host |
Displays a chart of events by host.
logscale
| Time Chart |
Linux - SSH
Widget | Description | Type |
---|---|---|
[ssh] Suspicious Activity |
Displays a table of suspicious SSH login activity like unknown or
invalid users.
logscale
| Table |
[ssh] Failed Source IPs |
Displays a list of failed SSH source IPs that have failed by user
and limits results to the first 10 entries.
logscale
| Bar Chart |
[ssh] Events by Host |
Displays a chart of the top 10 SSH events by host.
logscale
| Time Chart |
[ssh] Failed Login Attempts |
Displays a list of failed SSH login attempts.
logscale
| Gauge |
Linux - Sudo
Widget | Description | Type |
---|---|---|
[sudo] Top Commands |
Displays a chart of the top Sudo commands used.
logscale
| Pie Chart |
[sudo] Latest Events |
Displays a table of the latest sudo events and associated data
(timestamp, host, PID, etc.)
logscale
| Table |
[sudo] Number of Events | logscale
| Gauge |
[sudo] Opened Sessions |
This describes recent instances of sudo being executed.
logscale
| Table |
[sudo] Events by Host | logscale
| Time Chart |