Logo
Resources
Documentation Portal Ideas Portal Guardsix Academy License Portal
Resources
Documentation Portal Ideas Portal Guardsix Academy License Portal
Sign in
  1. Guardsix Servicedesk
  2. Products Hub
  3. Marketplace

Kubernetes

Standard

Kubernetes Plug-In for the Logpoint SIEM allows you to import and normalize Kubernetes logs from a Linux based log source, or an Amazon Elastic Kubernetes Service (EKS) log source imported via CloudWatch.

Release Details

Version: 1.0.0
SHA 256: fb1c136d6d88a633124e0b966701d67c5c54658eaf89c1046d04717dc2be3eec
Download

Package Details

  1. Component
    • Kubernetes Alert Rules (4 alert rules) - Install via KB > Alert Rules > Import ( KubernetesAlertRules.pak )
    • Kubernetes Audit Compiled Normalizer - Install via System Settings > Configuration > Universal Normalizer > Add > Browse ( KubernetesAuditCompiledNormalizer.pak ) > Upload Config
    • Kubernetes Dashboard (8 dashboards) - Install via KB > Dashboards > Import ( KubernetesDashboards.pak )
    • Kubernetes Report Template (1 report) - Install via Reports > Report Templates > Import ( KubernetesReportTemplate.pak )
    • Kubernetes Search Template (1 report with 3 tabs) - Install via KB > Search Templates > Import ( KubernetesSearchTemplate.pak)

Enhancement

KB-xxxxx

Kubernetes Plug-In Components

  1. Kubernetes Alert Rules (4 alert rules) - Install via KB > Alert Rules > Import (KubernetesAlertRules.pak)
  2. Kubernetes Audit Compiled Normalizer - Install via System Settings > Configuration > Universal Normalizer > Add > Browse (KubernetesAuditCompiledNormalizer.pak) > Upload Config
  3. Kubernetes Dashboard (8 dashboards) - Install via KB > Dashboards > Import (KubernetesDashboards.pak)
  4. Kubernetes Report Template (1 report) - Install via Reports > Report Templates > Import (KubernetesReportTemplate.pak)
  5. Kubernetes Search Template (1 report with 3 tabs) - Install via KB > Search Templates > Import (KubernetesSearchTemplate.pak)

Documentation

The following documentation is available in the attachments:

  • Kubernetes Plug-In Setup Instructions (Installation Guide)
  • Kubernetes Logging on EKS
  • Kubernetes Logging on Linux
  • Kubernetes Logging Overview

Academy Training

The link to the Academy training is here:

https://academy.logpoint.com/learn/courses/8/logpoint-masterclasses/lessons/138:28/kubernetes 

There is also a YouTube video here:

https://youtu.be/rE1ZuUhvyWk

Support

If you have any questions or require assistance, create a support ticket.

  • Kubernetes Plug-In Setup Instructions.pdf (2 MB)
  • Kubernetes Logging on EKS.pdf (400 KB)
  • Kubernetes Logging on Linux.pdf (100 KB)
  • Kubernetes Logging Overview.pdf (200 KB)

Comments

Please sign in to leave a comment.

Follow

Related articles

  • Universal Normalizer
  • SpotCheck Process Plugin
  • AgentX Manager
  • Format Date Process Plugin
  • Vendor list changes are reset to default after upgrading to Logpoint v7.5.0.
Consent Required To Proceed
By clicking “I Agree & Download”, you confirm that you are authorized to act on behalf of your organization and you give explicit consent for Guardsix to share your organization’s customer name and log source count with NXLog for the sole purposes of entitlement management, compliance verification, and support delivery related to the embedded NXLog technology in the Guardsix SIEM solution.

This data will not be used for sales or marketing and will not be shared with other third parties. You may withdraw your consent at any time by contacting Guardsix Support; withdrawal will not affect processing already performed.
Cancel I Agree & Download
Privacy policy    EULA    Terms of service   
Copyright © , Guardsix. All rights reserved.

Note: We use cookies that are essential for the smooth functioning of our website.