Alerts for Potentially Malicious Actions¶
Excalibur operates on a whitelisting principle: users only have access to resources they are explicitly configured to access. This inherently limits the scope for unauthorized actions, as access to the broader network is not granted — only streamed access to specific resources is provided.
Authentication Logging¶
All authentication attempts are logged. Failed attempts are recorded and can be used for security monitoring.
SIEM Integration for Alerts¶
All relevant security events are streamed to your SIEM. You can configure your SIEM to send alerts and notifications based on specific events.
For more details, see SIEM Integration.
Future AI-Based Anomaly Detection¶
AI-powered anomaly detection (e.g., behavioral analysis, attack detection) is a feature under development and not yet generally available.