JustinAzoff / zeek-clickhouse
☆13Updated 3 years ago
Alternatives and similar repositories for zeek-clickhouse
Users that are interested in zeek-clickhouse are comparing it to the libraries listed below
Sorting:
- Kafka connector to sync Zed lakes to and from Kafka topics☆18Updated 11 months ago
- IceDB S3 Proxy to trick S3 clients into only seeing alive files☆13Updated last year
- flexible, structured event replication format for DNS servers (Protocol Buffers schema)☆24Updated 3 months ago
- DuckDB extension for readin PCAP files☆15Updated 8 months ago
- An open standard for hashing network flows into identifiers, a.k.a "Community IDs".☆178Updated 7 months ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 3 weeks ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Updated 3 weeks ago
- Zeek support for Community ID flow hashing.☆35Updated last year
- Rust implementation of the DCSO Bloom filter☆27Updated last month
- A Spicy protocol analyzer for WireGuard☆29Updated 4 years ago
- Full packet capture with flow cutoff, rotation, and compression☆15Updated 6 years ago
- Running ClickHouse like it's BigQuery☆38Updated last year
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated last year
- Server to view ClickHouse profiler data in speedscope.app☆11Updated 5 years ago
- A golang JSON canonicalization scheme library based on RFC 8785☆22Updated last year
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆31Updated 8 months ago
- A pure Go library for working with Structured Threat Information Expression (STIX™) version 2.x data☆23Updated 2 weeks ago
- Top-K elephant flows finding using HeavyKeeper accurate algorithm☆29Updated 2 years ago
- ☆10Updated 4 years ago
- Simple, Non authoritative Benchmarks for embedded databases running in Github Actions☆11Updated 10 months ago
- DuckDB PCAP Reader Extension made in Rust☆10Updated 3 weeks ago
- Collects many small insterts to ClickHouse and send in big inserts☆11Updated 3 years ago
- A Lua helper library for creating network protocol dissectors☆13Updated 4 years ago
- Generate network maps from packet captures☆31Updated 5 years ago
- ☆17Updated 2 months ago
- Command line tool used for generating events corpus dynamically given a specific integration☆23Updated 3 months ago
- aggregate IP flow data for storage in a ClickHouse database☆20Updated last month
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆88Updated last year
- network message encapsulation library☆29Updated 2 weeks ago
- This repo aims to offer a packet flow tracer based on bpf☆13Updated 5 years ago