Note:
- This build was setup on a VMware ESXI 6.7.
- To summarize, XDR is truly a NextGen SIEM giving security teams a complete view into all the activity while leveraging machine learning to proactively stop attacks.
Ubuntu Server 20.04.3 LTS
- Direct Download:
- Hash Value:
f8e3086f3cea0fb3fefb29937ab5ed9d19e767079633960ccb50e76153effc98 *ubuntu-20.04.3-live-server-amd64.iso
- You can use linux or windows for the base hypervisor install.
-
VirtualBox for Windows or Linux Installs
-
Oracle VirtualBox 6.1.26
- Oracle VirtualBox Guest Extension Pack
- Hash Value:
eed44e66d898c17cae46a14dff1fc86ac5c321372a7fc46efcef454c1e454307 *VirtualBox-6.1.26-145957-Win.exe
-
VMware for Windows or Linux Installs
-
VMware Workstation 16.1.2 Player Free
- Hash Value:
Windows: ce5949c2ca89c6fc8349d63e6d1dd053325b5803b93870aa3b73a106d76c942f
Linux: 8da4df34bfa72398115ca5a02d9fbe491df6f8e82a3011cbd745e18e7242b45b
Note:
- These two are optional below.
- You will need physical hardware to install.
- VMware ESXI 6.7
- Hash Value
ISO: 7665f662ab4f821c8a5c918d0e14e2919828f88611072716cc5581a15fa8c13a
- VMware ESXI 7.0
- Hash Value
ISO: 35d80d52dfca79f52eadd1c641e2f990371e834e98b3ef95914b7f950b42f629
- Install Elastic Stack Build:
- Secure Elastic Stack Build:
- Elastic Beats Modules Build:
https://github.com/watsoninfosec/ElasticXDR/tree/main/Deployment-Guide/Beats-Setup
- Elastic Fleet Agent & Server Build:
https://github.com/watsoninfosec/ElasticXDR/tree/main/Deployment-Guide/FleetServer
This project is licensed under the MIT License - see the LICENSE file for details
MIT © WatsonInfoSec, LLC