Overview
This AMI image is an ubuntu based syslog collector as part of Seclytics Augur's PDR network security solution. It can be launched in your company's VPC environment to listen for syslog data that are forwarded to its IP. The VM will perform ETL transformation on the data, then send relevant events to Seclytics API for context correlation and reporting.
Highlights
- Advance warning via Predictive Intelligence
- Enforcement automation and orchestration
- Workflow simplification and rationalization
Typical total price
$0.083/hour
Pricing
Instance type | Product cost/hour | EC2 cost/hour | Total/hour |
---|---|---|---|
t3.nano | $0.00 | $0.005 | $0.005 |
t3.micro AWS Free Tier | $0.00 | $0.01 | $0.01 |
t3.small | $0.00 | $0.021 | $0.021 |
t3.medium | $0.00 | $0.042 | $0.042 |
t3.large Recommended | $0.00 | $0.083 | $0.083 |
t3.xlarge | $0.00 | $0.166 | $0.166 |
t3.2xlarge | $0.00 | $0.333 | $0.333 |
t3a.nano | $0.00 | $0.005 | $0.005 |
t3a.micro | $0.00 | $0.009 | $0.009 |
t3a.small | $0.00 | $0.019 | $0.019 |
Additional AWS infrastructure costs
Type | Cost |
---|---|
EBS General Purpose SSD (gp2) volumes | $0.10/per GB/month of provisioned storage |
Vendor refund policy
No refunds.
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
- Updated Ubuntu packages to the latest
- Resolve libpolkit CVE alert
Additional details
Usage instructions
- Please launch it with t3.large or higher instance type with default EBS of 200GB or larger SSD
- Add your own ssh key during launch configuration
- login as user ubuntu with the private key
- Obtain Augur API token from https://dashboard.seclytics.com/integration_syslogng
- Run this environment validation script and answer all of the questions: cd /etc/syslog-ng/; sudo ./env_validation.sh
- Please configure your SIEM or Firewall to forward syslog to this VM's ip.
- Verify that events are forwarded to the VM with the following: tail -f /var/log/syslog-ng/logs.txt
- Please contact Seclytics to confirm the integration is successful: support@seclytics.com
Resources
Vendor resources
Support
Vendor support
Email: support@seclytics.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.