Technical Writing
Longer-form writing on security operations, Wazuh implementation, infrastructure automation, and lessons that deserve more than a short note.
A Wazuh-by-Ansible implementation track covering deployment, SAML, manager and agent configuration, rule tuning, ClamAV, YARA, index backup automation, and Zeek telemetry integration.
How to install Zeek on selected hosts, collect JSON logs with the Wazuh agent, and promote them into custom network-security rules.
How I backed up Wazuh index data to Google Cloud Storage, kept snapshots for 9 days, and trimmed live index data to 7 days with three small moves.
How I built a YARA scanning pipeline that catches what ClamAV misses.
How I added recurring ClamAV scans as a reporting layer on top of on-access protection, with clean Wazuh alerts and per-directory audit visibility.
How I set up ClamAV on-access scanning with clamonacc, clamd, AppArmor, and Wazuh, then narrowed the protection scope so it stays stable on real hosts.
Page 1 / 5 · 30 articles