Impelix IMPACT Integration
with Wazuh
The Impelix IMPACT platform ingests telemetry from your all your security products as well as third-party feeds (threat intelligence, cybersecurity risk, business resilience intelligence, etc.) and delivers event correlation, security control efficacy, and compliance monitoring.
We believe that the more data ingested into IMPACT, the more context you will have regarding security incidents, which will allow effective and efficient incident response and compliance management. Therefore, we encourage and facilitate connecting vendor products telemetry with Impelix IMPACT platform.
Wazuh
Configure Wazuh Syslog output to Impelix IMPACT
Edit the ossec.conf file by entering the following:
<syslog_output>
<server>IP ADDRESS</server>
<format>cef</format>
</syslog_output>
NOTE: The IP ADDRESS should be the address of the IMPACT Streamer or All-In-One appliance you choose to send the syslog output to.
Wazuh instructions can be found here