linux/system-logs

VendorThe Linux FoundationParsers✓
AuthorCrowdStrikeDashboards✓
Version0.2.0Alerts✗
Minimum LogScale Version1.40.0Actions✗
  Scheduled Searches✗

This integration includes a parser that uses Log Collector to ship logs, with queries and sample dashboards for Linux System Logs.

The parser included is capable of parsing both Auditd logs, as well as general system Syslog format files. These can be easily adapted to a custom format if desired. The logs will be ingested with the UTC timezone.

Linux System Logs allow greater visibility into your environment, allowing for traceability, accountability, and security.