Announcing Graylog Illuminate for Authentication
Graylog Illuminate for authentication is a brand new offering designed by our Enterprise Intelligence team. It eliminates the manual setup necessary to detect, monitor, and analyze authentication activities and issues across your IT infrastructure by providing pre-built Dashboards, Alerts, and data enrichment.
Initially, Graylog Illuminate for Authentication will address Windows authentication issues and activities. We will release additional data sources in the coming weeks so stay tuned!
Spotlight on Windows Auth
Graylog Illuminate for Authentication comes with Windows authentication focused data normalization, parsing rules, data enrichment, correlation alerts, dashboards, and alerts zipped up and ready to deploy inside Graylog Enterprise v3.3+ (v3.2 will also work in a limited capacity).
Once deployed, Graylog Enterprise customers can immediately leverage our in-house expertise and gain visibility into who is trying to log into what throughout your IT environment.
Deploying Graylog Illuminate for Authentication
This new app works with Graylog Enterprise v3.3+. (v3.2 will also work in a limited capacity.) Other requirements are Winlogbeat 6.4 (included with Sidecar), Winlogbeat 7.6, or NXLog 2.1.
To get you started, we provide a detailed installation guide for a user-interactive set up experience along with a detailed Graylog Authentication and Monitoring Document that outlines best practices for gathering authentication data from Active Directory and Windows devices using Windows Auth Spotlight.
Tell Me More
Nick Carstensen, Product Manager - Security & Integrations tells the story of Graylog Illuminate and what's next here.