Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Feature Request: Scirius/Kibana flow #35

Closed
b-u-g-s opened this issue Jul 17, 2015 · 1 comment
Closed

Feature Request: Scirius/Kibana flow #35

b-u-g-s opened this issue Jul 17, 2015 · 1 comment

Comments

@b-u-g-s
Copy link

b-u-g-s commented Jul 17, 2015

The flow from Kibana to Scirius works great, you see an alert in Kibana, drill down and eventually ends up in Scirius to see the Suricata Alert. Perfect.

But the other way round is not so perfect.

It is great how Scirius has all those graphs, so you can look at your overall Circle graph from the last x hours and drill down into that graph, you select a category of alerts and can see the details of the Security rule as well as a timeline when that specific rule was triggered and ... that's it!
What is missing is a link back to Kibana so you can see what IP triggered those alerts (would also be great to have that info in Scirius)

At the moment the flow seems to only works one way down (from Kibana to Scirius) and it would be great to have a two way flow!

Thanks.
B.

@regit
Copy link
Member

regit commented Mar 14, 2016

Done with kibana 4 so closing.

@regit regit closed this as completed Mar 14, 2016
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants