System Requirements
Supported Operating Systems
Red Hat Enterprise Linux 8.x, 9.x
Oracle Linux 8.x, 9.x - Unbreakable Enterprise Kernel (UEK)
CentOS Stream 8.x, 9.x
AlmaLinux 8.x, 9.x
Rocky Linux 8.x, 9.x
Ubuntu 20.04, 22.04, 24.04 LTS
Note: Classic CentOS 8 is no longer maintained and does not receive security updates. Customers should migrate to CentOS Stream 9, AlmaLinux 9, or Rocky Linux 9 for continued support and compliance with security policies.
Supported Web Browsers
Google Chrome 90+
Mozilla Firefox 88+
Opera 76+
Microsoft Edge 90+
Safari 14+
Network Communication Requirements
From |
To |
Port |
Protocol |
Description |
|---|---|---|---|---|
SIEM Agent |
SIEM Data Node |
1514 |
TCP (default) |
Agent connection service |
SIEM Data Node |
1514 |
UDP (optional) |
Agent connection service (disabled by default) |
|
SIEM Data Node |
1515 |
TCP |
Agent enrollment service |
|
SIEM Data Node |
SIEM Data Node |
1516 |
TCP |
SIEM cluster daemon |
Source |
SIEM Data Node |
5514 |
UDP (default) |
SIEM Syslog collector (port forward from 514, disabled by default) |
SIEM Data Node |
5514 |
TCP (optional) |
SIEM Syslog collector (port forward from 514, disabled by default) |
|
ELS Console |
SIEM Data Node |
55000 |
TCP |
SIEM server RESTful API |
Every ELS component |
ELS Data Node |
9200 |
TCP |
License verification through License Service |
Integration source |
ELS Data Node |
9200 |
TCP |
ELS Data Node API |
Other cluster nodes |
ELS Data Node |
9300 |
TCP |
ELS Data Node transport |
User browser |
ELS Console |
5601 |
TCP |
Default GUI |
ELS Console |
5602 |
TCP |
Admin console |
|
ELS Console |
5603 |
TCP |
Wiki GUI |
|
ELS Console |
Every Network Node |
9000 |
TCP |
Manage files, services and pipelines |
Hardware Requirements
Minimum Requirements (Development/Testing)
Component |
CPU |
RAM |
Storage |
Network |
|---|---|---|---|---|
All-in-One |
8 cores |
32 GB |
500 GB SSD |
1 Gbps |
ELS Data Node |
6 cores |
16 GB |
200 GB SSD |
1 Gbps |
ELS Console |
4 cores |
8 GB |
50 GB |
1 Gbps |
ELS Network Node |
6 cores |
8 GB |
50 GB |
1 Gbps |
Production Requirements (Recommended)
Component |
CPU |
RAM |
Storage |
Network |
|---|---|---|---|---|
ELS Data Node |
16+ cores |
64 GB |
1 TB NVMe SSD |
10 Gbps |
ELS Console |
8 cores |
32 GB |
200 GB SSD |
1 Gbps |
ELS Network Node |
8 cores |
32 GB |
200 GB SSD |
10 Gbps |