Did you know about sos command?
The Linux sos command generates a compressed and encrypted tar file containing system logs and configuration files in under 1 minute. This file, called a sosreport, can be used to analyze system performance, detect problems, and identify root causes. Maintaining a history of sosreports allows for comparison and identification of discrepancies over time. The sos command is a diagnostic tool, not a monitoring system or SIEM, and is open-source. It can be used to improve system security and reduce exposure.