This repository was archived by the owner on Jul 10, 2018. It is now read-only.

Description
Standard dashboards must be created across Bro and Suricata. For Bro implement dashboards for the following:
HTTP
SSL/TLS
DNS
Files
For Suricata implement frequent alarms
GEO-IP should be implemented as well in Logstash and the dashboards.
Work towards standardizing fields across the two tools so field names are named the same thing.
https://www.elastic.co/guide/en/elasticsearch/reference/current/indices-aliases.html