ub.xmlui.mirage2.page-structure.muninLogoub.xmlui.mirage2.page-structure.openResearchArchiveLogo
    • EnglishEnglish
    • norsknorsk
  • Velg spraaknorsk 
    • EnglishEnglish
    • norsknorsk
  • Administrasjon/UB
Vis innførsel 
  •   Hjem
  • Fakultet for naturvitenskap og teknologi
  • Institutt for informatikk
  • Mastergradsoppgaver i informatikk
  • Vis innførsel
  •   Hjem
  • Fakultet for naturvitenskap og teknologi
  • Institutt for informatikk
  • Mastergradsoppgaver i informatikk
  • Vis innførsel
JavaScript is disabled for your browser. Some features of this site may not work without it.

Event Based Dynamic Client Logging

Permanent lenke
https://hdl.handle.net/10037/37927
Thumbnail
Åpne
no.uit:wiseflow:7267640:62187161.pdf (1.962Mb)
(PDF)
Dato
2025
Type
Master thesis

Forfatter
Mikalsen, Sondre Undal
Sammendrag
Enterprise Security Information and Event Management (SIEM) systems are increasingly challenged by the need to balance comprehensive log collection with the practical limitations of storage, network bandwidth, and operational overhead. This often results in selective logging strategies that, while resource-efficient, risk omitting critical contextual information necessary for effective security investigations and incident response. This thesis addresses this fundamental trade-off by presenting the design, implementation, and empirical evaluation of a dynamic logging agent that extends the Wazuh platform. The proposed agent augments traditional logging workflows by introducing a local, rule-based detection engine capable of monitoring verbose log streams directly on the endpoint. Upon detection of security-relevant events, the agent dynamically increases logging verbosity and selectively forwards enriched contextual information to the SIEM. During periods of normal operation, the agent reduces log transmission by filtering routine or low-priority events, thereby maintaining efficient resource utilisation without sacrificing operational visibility.
 
 
 
Forlag
UiT The Arctic University of Norway
Metadata
Vis full innførsel
Samlinger
  • Mastergradsoppgaver i informatikk [135]

Bla

Bla i hele MuninEnheter og samlingerForfatterlisteTittelDatoBla i denne samlingenForfatterlisteTittelDato
Logg inn

Statistikk

Antall visninger
UiT

Munin bygger på DSpace

UiT Norges Arktiske Universitet
Universitetsbiblioteket
uit.no/ub - munin@ub.uit.no

Tilgjengelighetserklæring