Systemd Journal
Overview
AlphaSOC supports the ingestion of systemd journal logs for security monitoring and threat detection. This includes logs from all services managed by systemd.
Sending Telemetry to AlphaSOC
note
Systemd journal logs must be in JSON format.
After telemetry preparation, the logs can be sent to AlphaSOC for analysis using one of the available transport methods.