Wazuh is an open-source intrusion detection system that uses individual agents to monitor user and network activities on a host-basis.   Suspicious activity is reported using alerts via email.  Agents were deployed to the workstations in the Living Lab through the use of group policy management.  The Auto-OSSEC tool developed by Binary Defense Systems provides automatically provisioning for agents in order to provide their authentication key.  Kibana is a web interface that can manage agents and mine data.

Project Team Members:  Andrew Smith, William Schene