ElasticSA / wec_pepped
Pep up your Windows Event Collector (WEC) for Windows Event Forwarding (WEF)
☆19Updated 3 years ago
Alternatives and similar repositories for wec_pepped:
Users that are interested in wec_pepped are comparing it to the libraries listed below
- A solution for using the ElastiFlow Unified Collector with the Elastic Stack (Elasticsearch and Kibana).☆22Updated 2 weeks ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 3 years ago
- Wazuh - Splunk App☆52Updated 5 months ago
- Corelight-Ansible-Roles are a collection of Ansible Roles and playbooks that install, configure, run and manage a variety of Corelight, S…☆16Updated 3 years ago
- Setup a Primary Domain Controller and Active Directory on a Windows Server with a easy to use and abstracted Ansible role.☆21Updated 11 months ago
- IBM QRadar Ansible Collection☆24Updated this week
- Converts Netwitness log parser configuration to Logstash configuration☆20Updated 4 years ago
- This repo contains information on how to auto deploy Sysmon via GPO and Task Scheduler☆12Updated 3 years ago
- Terraform provider for Check Point☆28Updated last week
- An Ansible playbook for deploying the Suricata intrusion detection system and fetching Snort rules with Oinkmaster.☆15Updated 3 years ago
- Automated CIS Benchmark Compliance Remediation for Windows Server 2022 with Ansible☆82Updated this week
- Palo Alto Networks Rule Parser☆16Updated 8 years ago
- Generate syslog messages to test logging solutions.☆54Updated 11 months ago
- Ubuntu 20.04 LTS | CIS Hardening Ansible Role☆9Updated 2 years ago
- setup and configure linux auditd☆20Updated 2 months ago
- ☆18Updated 2 years ago
- Fortinet configuration file convertor to JSON, XSLS files☆10Updated last year
- patch to apply to a netbox installation to add beautiful topology view to sites☆13Updated 5 years ago
- Network monitoring using Telgraf, InfluxDB and Grafana for openconfig/SNMP☆26Updated 2 years ago
- Read only mirror. To contribute or submit issues, please go to the website link --->☆13Updated last year
- Detection-as-Code CI/CD pipeline for modern security tools (SIEM, EDR, XDR, ...)☆17Updated last month
- ☆47Updated 7 months ago
- Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug☆9Updated 4 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 2 weeks ago
- A bash script to create a persistent port mirror for an IDS within a Proxmox hypervisor☆19Updated 6 years ago
- Translate an ECS mapping CSV to starter pipelines for Beats, Elasticsearch or Logstash☆54Updated 2 years ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆27Updated 4 years ago
- Kibana 6 Templates for Suricata IDPS Threat Hunting☆24Updated 5 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated 2 months ago