KOFE is an opensource, SIEM-like experience powered by Kibana, OSSEC Filebeat, and Elasticsearch
-
Add the Atomic Repository
wget -q -O - https://updates.atomicorp.com/installers/atomic |bash
-
Install OUM (OSSEC Updater Modified)
yum install oum
-
Install KOFE via OUM
oum install kofe
-
Run KOFE setup to begin configuration
kofe setup
KOFE comes with a suite of dashboards provided by Atomicorp.
-
Installing a dashboard
kofe install
-
Listing a dashboard
kofe list