ub.xmlui.mirage2.page-structure.muninLogoub.xmlui.mirage2.page-structure.openResearchArchiveLogo
    • EnglishEnglish
    • norsknorsk
  • Velg spraakEnglish 
    • EnglishEnglish
    • norsknorsk
  • Administration/UB
View Item 
  •   Home
  • Fakultet for naturvitenskap og teknologi
  • Institutt for informatikk
  • Mastergradsoppgaver i informatikk
  • View Item
  •   Home
  • Fakultet for naturvitenskap og teknologi
  • Institutt for informatikk
  • Mastergradsoppgaver i informatikk
  • View Item
JavaScript is disabled for your browser. Some features of this site may not work without it.

Event Based Dynamic Client Logging

Permanent link
https://hdl.handle.net/10037/37927
Thumbnail
View/Open
no.uit:wiseflow:7267640:62187161.pdf (1.962Mb)
(PDF)
Date
2025
Type
Master thesis

Author
Mikalsen, Sondre Undal
Abstract
Enterprise Security Information and Event Management (SIEM) systems are increasingly challenged by the need to balance comprehensive log collection with the practical limitations of storage, network bandwidth, and operational overhead. This often results in selective logging strategies that, while resource-efficient, risk omitting critical contextual information necessary for effective security investigations and incident response. This thesis addresses this fundamental trade-off by presenting the design, implementation, and empirical evaluation of a dynamic logging agent that extends the Wazuh platform. The proposed agent augments traditional logging workflows by introducing a local, rule-based detection engine capable of monitoring verbose log streams directly on the endpoint. Upon detection of security-relevant events, the agent dynamically increases logging verbosity and selectively forwards enriched contextual information to the SIEM. During periods of normal operation, the agent reduces log transmission by filtering routine or low-priority events, thereby maintaining efficient resource utilisation without sacrificing operational visibility.
 
 
 
Publisher
UiT The Arctic University of Norway
Metadata
Show full item record
Collections
  • Mastergradsoppgaver i informatikk [135]

Browse

Browse all of MuninCommunities & CollectionsAuthor listTitlesBy Issue DateBrowse this CollectionAuthor listTitlesBy Issue Date
Login

Statistics

View Usage Statistics
UiT

Munin is powered by DSpace

UiT The Arctic University of Norway
The University Library
uit.no/ub - munin@ub.uit.no

Accessibility statement (Norwegian only)