<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>HIDS &#8211; Réseau CERTA</title>
	<atom:link href="https://www.reseaucerta.org/tag/hids/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.reseaucerta.org</link>
	<description>Des ressources pour enseigner le numérique</description>
	<lastBuildDate>Tue, 24 Feb 2026 15:37:17 +0000</lastBuildDate>
	<language>fr-FR</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://www.reseaucerta.org/wp-content/uploads/cours/cropped-favicon-certa-32x32.png</url>
	<title>HIDS &#8211; Réseau CERTA</title>
	<link>https://www.reseaucerta.org</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Déploiement d&#8217;un SIEM-XDR avec Wazuh</title>
		<link>https://www.reseaucerta.org/deploiement-dun-siem-xdr-avec-wazuh/</link>
					<comments>https://www.reseaucerta.org/deploiement-dun-siem-xdr-avec-wazuh/#respond</comments>
		
		<dc:creator><![CDATA[Administrateur Certa]]></dc:creator>
		<pubDate>Sun, 30 Mar 2025 11:52:53 +0000</pubDate>
				<category><![CDATA[_BTS SIO]]></category>
		<category><![CDATA[Bloc 3 - Cybersécurité des services informatiques - SISR]]></category>
		<category><![CDATA[Côté labo 🧪]]></category>
		<category><![CDATA[EDR]]></category>
		<category><![CDATA[HIDS]]></category>
		<category><![CDATA[HIPS Wazuh]]></category>
		<category><![CDATA[SIEM]]></category>
		<category><![CDATA[XDR]]></category>
		<guid isPermaLink="false">https://www.reseaucerta.org/?p=9231</guid>

					<description><![CDATA[Déploiement d’un SIEM-XDR avec Wazuh Public concerné BTS SIO Matière Bloc 3 &#8211; Cybersécurité des services informatiques &#8211; SISR Présentation L’objectif de ce « Labo » est de comprendre l’intérêt d’un SIEM-XDR et d’en tester les principaux usages (détecter les vulnérabilités des serveurs, répondre aux menaces). La solution Wazuh sera étudiée dans cette proposition mais les fonctionnalités [&#8230;]]]></description>
										<content:encoded><![CDATA[		<div data-elementor-type="wp-post" data-elementor-id="9231" class="elementor elementor-9231">
				<div class="elementor-element elementor-element-74338ad4 e-con-full e-flex e-con e-parent" data-id="74338ad4" data-element_type="container" data-e-type="container">
		<div class="elementor-element elementor-element-1e19082b e-grid e-con-full e-con e-child" data-id="1e19082b" data-element_type="container" data-e-type="container" data-settings="{&quot;background_background&quot;:&quot;classic&quot;}">
				<div class="elementor-element elementor-element-17d21ac7 elementor-widget elementor-widget-heading" data-id="17d21ac7" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h2 class="elementor-heading-title elementor-size-default">Déploiement d’un SIEM-XDR avec Wazuh</h2>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-3fd61598 e-con-full e-flex e-con e-child" data-id="3fd61598" data-element_type="container" data-e-type="container" data-settings="{&quot;background_background&quot;:&quot;classic&quot;}">
		<div class="elementor-element elementor-element-58e1a9e e-con-full e-flex e-con e-child" data-id="58e1a9e" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-70b5e299 elementor-widget elementor-widget-heading" data-id="70b5e299" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Public concerné </h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-5e31426d e-con-full e-flex e-con e-child" data-id="5e31426d" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-60957383 elementor-widget elementor-widget-text-editor" data-id="60957383" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p>BTS SIO</p>								</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-2972b360 e-con-full e-flex e-con e-child" data-id="2972b360" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-59015231 elementor-widget elementor-widget-heading" data-id="59015231" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Matière</h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-74c43115 e-con-full e-flex e-con e-child" data-id="74c43115" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-20f29ca elementor-widget elementor-widget-text-editor" data-id="20f29ca" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p>Bloc 3 &#8211; Cybersécurité des services informatiques &#8211; SISR</p>								</div>
				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-13169a18 e-con-full e-flex e-con e-child" data-id="13169a18" data-element_type="container" data-e-type="container" data-settings="{&quot;background_background&quot;:&quot;classic&quot;}">
		<div class="elementor-element elementor-element-5004bc27 e-con-full e-flex e-con e-child" data-id="5004bc27" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-d1bc53d elementor-widget elementor-widget-heading" data-id="d1bc53d" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Présentation </h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-8ef30f9 e-con-full e-flex e-con e-child" data-id="8ef30f9" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-784a3771 elementor-widget elementor-widget-text-editor" data-id="784a3771" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p>L’objectif de ce « Labo » est de comprendre l’intérêt d’un SIEM-XDR et d’en tester les principaux usages (détecter les vulnérabilités des serveurs, répondre aux menaces).</p><p>La solution Wazuh sera étudiée dans cette proposition mais les fonctionnalités présentées sont disponibles dans d’autres solutions SIEM.</p><p>Ce « Labo » comporte <strong>3 activités </strong>qui peuvent être réalisées en bloc3 SISR :</p><ul><li><strong>Activité 1</strong> : Installation dU SIEM WAZUH et des agents</li><li><strong>Activité 2</strong> : évaluation des configurations et chasse aux menaces</li><li><strong>Activité 3</strong> : réponse aux menaces</li></ul><p><strong>D’autres activités</strong> (comme la gestion des faux positifs, l’intégration des éléments d’interconnexion sans agents, etc.) seront intégrées ultérieurement.</p>								</div>
				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-4406e75f e-con-full e-flex e-con e-child" data-id="4406e75f" data-element_type="container" data-e-type="container" data-settings="{&quot;background_background&quot;:&quot;classic&quot;}">
		<div class="elementor-element elementor-element-46715077 e-con-full e-flex e-con e-child" data-id="46715077" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-12b80aa7 elementor-widget elementor-widget-heading" data-id="12b80aa7" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Pré-requis</h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-105b580f e-con-full e-flex e-con e-child" data-id="105b580f" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-1b018c41 elementor-widget elementor-widget-text-editor" data-id="1b018c41" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p>Commandes de base d’administration d’un système Linux. Notions de virtualisation voire de conteneurisation (si installation via Docker Compose).</p>								</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-59d81dfb e-con-full e-flex e-con e-child" data-id="59d81dfb" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-2382049f elementor-widget elementor-widget-heading" data-id="2382049f" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Savoirs <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f393.png" alt="🎓" class="wp-smiley" style="height: 1em; max-height: 1em;" /></h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-7c86525a e-con-full e-flex e-con e-child" data-id="7c86525a" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-6313dfa1 elementor-widget elementor-widget-text-editor" data-id="6313dfa1" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p>Outils de sécurité : prévention et détection des attaques, gestion d’incidents.</p>								</div>
				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-59f006b6 e-con-full e-flex e-con e-child" data-id="59f006b6" data-element_type="container" data-e-type="container" data-settings="{&quot;background_background&quot;:&quot;classic&quot;}">
		<div class="elementor-element elementor-element-52304bda e-con-full e-flex e-con e-child" data-id="52304bda" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-1bcc453b elementor-widget elementor-widget-heading" data-id="1bcc453b" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Compétences</h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-2f367fc3 e-con-full e-flex e-con e-child" data-id="2f367fc3" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-6bc972b3 elementor-widget elementor-widget-text-editor" data-id="6bc972b3" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p><strong>3.3 Sécuriser les équipements et les usages des utilisateurs</strong></p><ul><li>Identifier les menaces et mettre en œuvre les défenses appropriées</li><li>Vérifier l’efficacité de la protection</li></ul><p><strong>3.4 Garantir la disponibilité, l’intégrité et la confidentialité des services informatiques et des données de l’organisation face à des cyberattaques</strong></p><ul><li>Organiser la collecte et la conservation des preuves numériques</li></ul>								</div>
				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-8426f69 e-con-full e-flex e-con e-child" data-id="8426f69" data-element_type="container" data-e-type="container" data-settings="{&quot;background_background&quot;:&quot;classic&quot;}">
		<div class="elementor-element elementor-element-300a9654 e-con-full e-flex e-con e-child" data-id="300a9654" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-2994973d elementor-widget elementor-widget-heading" data-id="2994973d" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Outils <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f6e0.png" alt="🛠" class="wp-smiley" style="height: 1em; max-height: 1em;" /></h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-cddbfd9 e-con-full e-flex e-con e-child" data-id="cddbfd9" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-5ef7b698 elementor-widget elementor-widget-text-editor" data-id="5ef7b698" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p>Un serveur physique ou virtuel sous une distribution Linux 64 bits (ici Debian 12 – version stable actuelle ou Ubuntu serveur) sur lequel Wazuh sera installé avec un serveur.</p><p>Un serveur physique ou virtuel sous Linux avec le service DHCP</p><p>Un serveur physique ou virtuel sous un environnement Windows Serveur avec Active Directory installé.</p><p>Une machine physique ou virtuelle Kali.</p><p>Site officiel : <a class="western" href="https://wazuh.com/">https://wazuh.com/</a></p>								</div>
				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-4085913 e-con-full e-flex e-con e-child" data-id="4085913" data-element_type="container" data-e-type="container" data-settings="{&quot;background_background&quot;:&quot;classic&quot;}">
		<div class="elementor-element elementor-element-b1a399a e-con-full e-flex e-con e-child" data-id="b1a399a" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-9c79e4d elementor-widget elementor-widget-heading" data-id="9c79e4d" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Téléchargements <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f4e5.png" alt="📥" class="wp-smiley" style="height: 1em; max-height: 1em;" /></h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-81eeed5 e-con-full e-flex e-con e-child" data-id="81eeed5" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-50b4d29 elementor-widget elementor-widget-text-editor" data-id="50b4d29" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p><strong><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f4ce.png" alt="📎" class="wp-smiley" style="height: 1em; max-height: 1em;" /> <a href="https://www.reseaucerta.org/wp-content/uploads/laboratoires/siemwazuhcontexte.pdf" target="_blank" rel="noopener">siem wazuh contexte</a></strong></p><p><strong><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f4ce.png" alt="📎" class="wp-smiley" style="height: 1em; max-height: 1em;" /> <a href="https://www.reseaucerta.org/wp-content/uploads/laboratoires/deploiementsiem-xdr-wazuh.zip">deploiementsiem-xdr-wazuh</a></strong></p><p><strong><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f512.png" alt="🔒" class="wp-smiley" style="height: 1em; max-height: 1em;" /> <a href="https://www.reseaucerta.org/wp-content/uploads/laboratoires/private/deploiementsiem-xdr-wazuh_cor.zip">deploiementsiem-xdr-wazuh_cor</a></strong></p>								</div>
				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-3c60cc02 e-con-full e-flex e-con e-child" data-id="3c60cc02" data-element_type="container" data-e-type="container" data-settings="{&quot;background_background&quot;:&quot;classic&quot;}">
		<div class="elementor-element elementor-element-4fd8f330 e-con-full e-flex e-con e-child" data-id="4fd8f330" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-27d4f0f0 elementor-widget elementor-widget-heading" data-id="27d4f0f0" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Mots-clés ﹟</h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-41e08c02 e-con-full e-flex e-con e-child" data-id="41e08c02" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-6ed3cbe3 elementor-widget elementor-widget-text-editor" data-id="6ed3cbe3" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p>SIEM, XDR, EDR, HIDS, HIPS Wazuh</p>								</div>
				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-3d23c23c e-con-full e-flex e-con e-child" data-id="3d23c23c" data-element_type="container" data-e-type="container" data-settings="{&quot;background_background&quot;:&quot;classic&quot;}">
		<div class="elementor-element elementor-element-15506b8d e-con-full e-flex e-con e-child" data-id="15506b8d" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-65471c6c elementor-widget elementor-widget-heading" data-id="65471c6c" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Date de publication</h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-23350cea e-con-full e-flex e-con e-child" data-id="23350cea" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-89bc355 elementor-widget elementor-widget-text-editor" data-id="89bc355" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p>Lorem ipsum dolor sit amet, consectetur adipiscing elit. Ut elit tellus, luctus nec ullamcorper mattis, pulvinar dapibus leo.</p>								</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-30fa16ef e-con-full e-flex e-con e-child" data-id="30fa16ef" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-6f31d379 elementor-widget elementor-widget-heading" data-id="6f31d379" data-element_type="widget" data-e-type="widget" data-widget_type="heading.default">
				<div class="elementor-widget-container">
					<h4 class="elementor-heading-title elementor-size-default">Auteur.e(s)</h4>				</div>
				</div>
				</div>
		<div class="elementor-element elementor-element-18b98a89 e-con-full e-flex e-con e-child" data-id="18b98a89" data-element_type="container" data-e-type="container">
				<div class="elementor-element elementor-element-53ddd4fb elementor-widget elementor-widget-text-editor" data-id="53ddd4fb" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p>David BALNY avec Apollonie RAFFALLI comme testeuse et relectrice.</p>								</div>
				</div>
				</div>
				</div>
				</div>
				</div>
		]]></content:encoded>
					
					<wfw:commentRss>https://www.reseaucerta.org/deploiement-dun-siem-xdr-avec-wazuh/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
