System monitoring with osquery
System monitoring with osquery
Posted May 26, 2017 9:37 UTC (Fri) by amarao (guest, #87073)Parent article: System monitoring with osquery
There was one thing which I assumed to be supported: remote queries. I assumed that osqueryi (command line utility) can connect to remove osqueryd. It was so obvious to have and to do.
As far as I could see, there is not a single option which allows osqueryd to listen on TCP socket.
When I realized that this is not a 'remote SQL interface to your servers', most of my enthusiasm has faded. Yes, this thing is interesting, but it forces too much policy onto users, and it provides too few mechanisms.
