The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning. Learn more →
Auditd Alternatives
Similar projects and alternatives to auditd
-
InfluxDB
Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
-
WorkOS
The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.
-
adversary_emulation_library
An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.
-
Shuffle
Shuffle: A general purpose security automation platform. Our focus is on collaboration and resource sharing.
NOTE:
The number of mentions on this list indicates mentions on common posts plus user suggested alternatives.
Hence, a higher number means a better auditd alternative or higher similarity.
auditd reviews and mentions
Posts with mentions or reviews of auditd.
We have used some of these posts to build our list of alternatives
and similar projects. The last one was on 2023-02-24.
-
The Linux Process Journey - “kauditd”
Lastly, by using the “Linux Auditing System” the system administrator can investigate what happens in the system for the purpose of debugging or in case of a security incident. We can also use the “auditctl” utility get/add/delete rules as part of Linux's kernel audit system (https://linux.die.net/man/8/auditctl). Also, there are great examples for “audit.rules” in GitHub (one example is https://github.com/Neo23x0/auditd/blob/master/audit.rules).
-
Looking for inputs and validation for this network setup.
2) There are many opensource solutions, and you hit on all the important ones. Think creativitly, and test all your controls. hit your boxes with Metaspoilt and atomic redteam. These tools will help you verify that you have the proper controls in place, and that you are able to detect attacks (successful, and failed). Run auditd with Florian Roth's rule set on your linux boxes (https://github.com/Neo23x0/auditd/blob/master/audit.rules ), and sysmon (https://github.com/olafhartong/sysmon-modular) on windows.
-
Top 5 logs to ingest into Splunk
Linux: AuditD with customized configurations script for your environment
-
help needed: auditd rules for general purpose vps
However, the auditd repo from Florian Roth is like a golden standard for auditd config.
- How to forward syslog event related to CMDs done by none root user
- New blue team
-
Alerts Log Broken
Enabled auditd - with the rules from - https://github.com/Neo23x0/auditd
-
Splunk App for Unix and Linux
I don't think that the addon can do this for you. But, as a good start, check out Florian Roths auditd config (https://github.com/Neo23x0/auditd).
- Sysmon on Linux
-
A note from our sponsor - WorkOS
workos.com | 24 Apr 2024
Stats
Basic auditd repo stats
9
1,363
5.9
4 days ago
Neo23x0/auditd is an open source project licensed under Apache License 2.0 which is an OSI approved license.
Sponsored
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com