Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Create splunk alerts for suspicious activities of EC2 instances

$
0
0
Hi, I was assigned to set up splunk alerts that deals with malicious activities done in our EC2 instances, including: 1. SSH sessions / any login activities 2. changes to critical system config files 3. Download files form public internet, etc. Does anyone have a good approach to this? Thanks in advance!

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>