Has anyone set up syslog-ng w/ osquery? I'm follo...
# general
z
Has anyone set up syslog-ng w/ osquery? I'm following this to some extent (https://linoxide.com/monitoring-2/setup-osquery-monitor-security-threat-ubuntu/) but I'm not really seeing anything in
/var/osquery/syslog-pipe
or from
select * from syslog;
in osquery.
tl;dr: selinux was enabled when I thought it wasn't.