Project

General

Profile

Actions

Support #3719

closed

can Suricata integrate with Kibana?

Added by leonardo kasper almost 4 years ago. Updated almost 4 years ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Affected Versions:
Label:

Description

can the Suricata integrate with Kibana?

Actions #1

Updated by Jason Ish almost 4 years ago

  • Tracker changed from Bug to Support

It can, but its a bit ouf of the scope of Suricata. Suricata generates a log file, that Elastic tools such as Logstash and/or Filebeat can forward to Elasticsearch. I have some basic configuration examples here: https://github.com/jasonish/evebox/wiki#ingesting-events-with-logstash-andor-filebeat

You'll see have to create your Kibana Dashboards yourself though.

You may also want to look at SELKS for a bit of a quick start with Suricata and Elastic: https://www.stamus-networks.com/scirius-open-source

In the future, please consider using our forums, rather than the issue tracker for questions: https://forum.suricata.io/

Actions #2

Updated by leonardo kasper almost 4 years ago

thanks for helping me

Actions #3

Updated by Victor Julien almost 4 years ago

  • Subject changed from doubt to can Suricata integrate with Kibana?
Actions #4

Updated by Jason Ish almost 4 years ago

  • Status changed from New to Closed
Actions

Also available in: Atom PDF