SIEM과 EDR 솔루션 설치
Elastic EDR
요구사항
설치
# Docker installation - Ubuntu
https://docs.docker.com/engine/install/ubuntu/
# Docker installation - Debian
https://docs.docker.com/engine/install/debian/
# Docker Install for Kali/Debian
sudo apt update -y
sudo apt update -y ca-certificates curl gnupg lsb-release
sudo mkdir -p /etc/apt/keyrings
curl -fsSL https://download.docker.com/linux/debian/gpg | sudo gpg --dearmor -o /etc/apt/keyrings/docker.gpg
echo \
"deb [arch=$(dpkg --print-architecture) signed-by=/etc/apt/keyrings/docker.gpg] https://download.docker.com/linux/debian \
$(lsb_release -cs) stable" | sudo tee /etc/apt/sources.list.d/docker.list > /dev/null
# Install Docker
sudo apt update -y
sudo apt install docker-ce docker-ce-cli containerd.io docker-compose-plugin
# Install rest of the dependencies
sudo apt install jq git curl 설정

실습



마치며
레퍼런스
Last updated