Student edition · v19
Field guide
Operational references for managing and troubleshooting the Wazuh lab environment.
Extend the Wazuh Dashboard Session Timeout — v18
Extend the Wazuh Dashboard Session Timeout — v18 Scope: Wazuh Dashboard 4.14.5 in the Alerts to Answers lab. Verify the installed values before changing them. Purpose Increase the…
Read →Field guideOsquery Process-to-Network Correlation — v18
Osquery Process-to-Network Correlation — v18 Objective Use Osquery on Windows 11 to associate an active network socket with the process that owns it. Query from PowerShell Run…
Read →Field guideWazuh Dashboard Authorization-Token Troubleshooting — v18
Wazuh Dashboard Authorization-Token Troubleshooting — v18 Symptom The Wazuh application reports that it cannot obtain an authorization token, sometimes with Error 3002 and an HTTP…
Read →Field guide1. Completion Status
Wazuh Field Guide Installing, Validating, and Integrating Osquery on Ubuntu 26.04 Validated lab workflow: UB2604 -> Osquery -> Wazuh Agent -> Wazuh Manager -> Threat Hunting 1.…
Read →Field guideWazuh Lab Server Management Quick Reference — v18
Wazuh Lab Server Management Quick Reference — v18 Baseline: Wazuh 4.14.5 lab deployment. Commands assume package-based services; container deployments require container-specific…
Read →