Concepts

Conceptual scaffolding for LinuxGuard — security architecture, active response, alerting, and the console pillars.

Cross-cutting understanding pages: security architecture, identity intelligence, active response model, alerting model, and the console pillars sub-group.

What's in this section

  • Security Architecture — LinuxGuard's zero-trust, least-privilege security architecture — privilege model, eBPF monitoring, and runtime protections.

  • Active Response — How LinuxGuard's active-response model executes automated containment actions with triple opt-in safety and audited rollback.

  • Alerting & SIEM Integration — How LinuxGuard routes security signals to webhook, syslog, and Splunk HEC delivery channels via notification rules.

  • Console — Overview of the LinuxGuard console — the five pillars (Dashboard, Identity Intelligence, Zero Trust, Compliance, Infrastructure) and module gating.

Last updated

Was this helpful?