Main features of Wazuh in VK cloud

Wazuh modules for VK Cloud

Event collection and analysis in the VK Cloud are facilitated through native integration between VK Cloud and Wazuh.

  • The audit module for Wazuh is designed to collect and analyze data from Activity Log . Currently available version v1.0.1, which supports data collection for the following services.

    • cinder - Events related to virtual mashine disks.
    • nova - Events related to the compute resources controller.
    • neutron - Events related to cloud virtual networks.
    • glance - Events related to storing and managing images.
    • octavia - Events related to load balancer management.
    • dbaas, trove - Events related to creating and managing database instances.
    • magnum - Events related to Kubernetes containers.
    • quota - Events related to project quotas.
    • iam - Events related to project user management

Examples of events

Wazuh Web interface with example events (see Figure 1).

Figure 1. Wazuh WEB Interface