Bro and Wazuh Cluster Install

Hi,

I suppose it is possible to store the zeek logs into the same cluster for Wazuh.
My suggestion is to install zeek and ship the zeek logs with filebeat to the cluster then try to see from kibana if zeek logs are being transferred to elasticsearch.

Note: I have not tried out by myself but my logical assumption suggests as above for your query :slight_smile:

Regards,
Sami