Add systemd service status to SIEM host page #50115
Labels
enhancement
New value added to drive a business result
Team: SecuritySolution
Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.
Team:SIEM
Describe the feature:
@fearful-symmetry released a systemd integration to find out if services are stopped, dead, running. elastic/beats#14206 I think it would be nice if those show up in the SIEM app as an extra tab. Maybe it is possible to correlate the
uncommon processes
to the systemd services? E.g. is a process was spawned from systemd?The text was updated successfully, but these errors were encountered: