<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hermes on Homelab Journal</title><link>https://mareox.github.io/homelab-journal/topics/hermes/</link><description>Recent content in Hermes on Homelab Journal</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>© 2026 Mario</copyright><lastBuildDate>Thu, 05 Feb 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://mareox.github.io/homelab-journal/topics/hermes/index.xml" rel="self" type="application/rss+xml"/><item><title>Building a Homelab XDR: Wazuh, Graylog, and Monitoring AI Agents</title><link>https://mareox.github.io/homelab-journal/posts/2026/wazuh-xdr-implementation-journal/</link><pubDate>Thu, 05 Feb 2026 00:00:00 +0000</pubDate><guid>https://mareox.github.io/homelab-journal/posts/2026/wazuh-xdr-implementation-journal/</guid><description>&lt;h2 class="relative group">Why an XDR in a Homelab?
 &lt;div id="why-an-xdr-in-a-homelab" class="anchor">&lt;/div>
 
 &lt;span
 class="absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none">
 &lt;a class="text-primary-300 dark:text-neutral-700 !no-underline" href="#why-an-xdr-in-a-homelab" aria-label="Anchor">#&lt;/a>
 &lt;/span>
 
&lt;/h2>
&lt;p>When I first started building out my homelab infrastructure, I fell into the same trap that catches most homelab enthusiasts: I assumed that being behind a firewall made me safe. After all, I wasn&amp;rsquo;t running a Fortune 500 network. I had VLANs, I had a next-generation firewall doing deep packet inspection, and I kept my systems patched. What more did I need?&lt;/p></description><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://mareox.github.io/homelab-journal/posts/2026/wazuh-xdr-implementation-journal/thumbnail.png"/></item></channel></rss>