linux/system-logs

VendorThe Linux FoundationParsers
AuthorCrowdStrikeDashboards
Version0.2.0Alerts
Minimum LogScale Version1.40.0Actions
  Scheduled Searches

This integration includes a parser that uses Log Collector to ship logs, with queries and sample dashboards for Linux System Logs.

The parser included is capable of parsing both Auditd logs, as well as general system Syslog format files. These can be easily adapted to a custom format if desired. The logs will be ingested with the UTC timezone.

Linux System Logs allow greater visibility into your environment, allowing for traceability, accountability, and security.