Skip to content

mike-mitchell/ELK

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 
 
 
 
 

Repository files navigation

ELK5.0 SIEM with Bro IDS

#Setup Set the interface for Bro in the following locations.
Bro:

Edit the "node.cfg" file in the /ELK/conf.d/bro/ directory.
Change the "interface=ens33" to reflect the interface you want to span"

#Usage Run "docker-compose up -d" from the /ELK directory to start the applications.

Browse to Kibana: http://HOST_IP:5601

Configure the index using "bro-*"
Click discover to start browsing the logs.

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published