Unified XDR and SIEM platform
Wazuh is an open source security platform that unifies XDR and SIEM. It provides endpoint protection, threat detection, vulnerability analysis and regulatory compliance.
The Wazuh agent installed on your machines collects security events and sends them to the manager for real-time analysis.
After deploying your instance, you receive your credentials by email. You can also view them in your InstantApp dashboard.
From your instance details page, simply click the button to open the application directly:
https://wazuh-123456.locordi.com
admin / (password in dashboard)
Change the admin password on first login. The default password is automatically generated during installation.
Click on "Show credentials" in your instance details page to reveal the passwords.
To protect your machines, we provide pre-configured installation scripts that install the Wazuh agent with the correct connection settings.
Our downloadable scripts automatically install the Wazuh agent from official repos and configure it to connect to your manager.
From your instance details page, download the installation package for your operating system:
install-wazuh.cmdMake sure ports 1514 and 1515 are open between your agents and the Wazuh manager.
| Port | Protocol | Description |
|---|---|---|
1514 |
TCP | Agent-manager communication |
1515 |
TCP | Agent enrollment |
55000 |
TCP | Wazuh API |
If you see your agent with an Active status, the connection is established and monitoring is active!
Wazuh offers several security modules you can explore: