Deployment on Docker

Deploy Wazuh with the official Wazuh Docker images. Each stack runs all its containers on one Docker host.

  • Single-node stack: one container for each Wazuh central component. Use it for tests and small environments. It needs at least 8 GB of RAM.

  • Multi-node stack: three Wazuh indexer nodes, two Wazuh manager nodes, a Wazuh dashboard, and an Nginx container that receives Wazuh agent connections. It needs at least 16 GB of RAM.

  • Wazuh agent container: a Wazuh agent for syslog collection and integrations, on any Docker host.

Start with Wazuh Docker deployment, which covers the requirements, both stacks, and the Wazuh agent container. Use Building Docker images locally only if you need custom images.

Wazuh provides official Docker images you can use to streamline the deployment of its components. These include:

You can find all available Wazuh Docker images on Docker Hub.

Content