billmurrin / graylog-plugin-slookup-function
Stream Lookup function for GrayLog2 Pipeline Processor
☆14Updated 3 years ago
Alternatives and similar repositories for graylog-plugin-slookup-function:
Users that are interested in graylog-plugin-slookup-function are comparing it to the libraries listed below
- Grabs the administrator and authentication logs from the Duo Security API and sends CEF-formatted syslog.☆28Updated 8 years ago
- Graylog Processing Pipeline functions to enrich log messages with IoC information from threat intelligence databases☆153Updated 11 months ago
- Example configuration files for Logstash☆44Updated 5 years ago
- A search command for Splunk which will allow you to search Elastic Search and display the results in the Splunk GUI☆67Updated 7 years ago
- Alert condition plugin for Graylog to perform aggregation☆20Updated 2 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 3 years ago
- Contains Logstash related content including tons of Logstash configurations☆253Updated 3 years ago
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆74Updated 5 years ago
- Splunk App for Linux Auditd☆57Updated 3 years ago
- Engine of MineMeld☆141Updated 2 years ago
- Experimental DNS logs pipeline based on Pi-hole dnsmasq logs, ELK stack, and Filebeat. Sample configs included.☆30Updated last year
- Logstash Configuration for Linux Logs (Authentication, Apache, Mail)☆91Updated 5 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 3 years ago
- GrayLog2 QuickValuesPlus Widget☆22Updated 6 years ago
- Alert Wizard plugin for Graylog to manage the alert rules☆47Updated last month
- Simple block lists hub for PAN-OS DBL feature☆35Updated 6 years ago
- PANW Firewall Visualisations using Elastic Stack☆90Updated last year
- MineMeld nodes for MISP☆19Updated last year
- Dashboards and loader for ROCK NSM dashboards☆48Updated last year
- ☆35Updated last year
- WebUI of MineMeld☆43Updated last year
- Cisco eStreamer client☆25Updated 2 years ago
- ☆23Updated 5 years ago
- SELinux Policy for Splunk☆56Updated 5 years ago
- Allows to pull asset and identity data into Splunk app for Enterprise Security from LDAP and other sources☆27Updated 6 years ago
- This package allows the use of a custom Elastalert Alert which creates alerts with observables in TheHive using TheHive4Py.☆27Updated 3 years ago
- Alert condition plugin for Graylog to perform correlation☆25Updated 2 months ago
- Enterprise Log Search and Archive☆207Updated 6 years ago
- ELK configuration files for Forensic Analysts and Incident Handlers (unmaintained)☆179Updated 5 years ago
- FW1-Loggrabber is a command-line tool to grab logfiles from remote Checkpoint devices using OPSEC LEA (Log Export API)☆52Updated 5 years ago