RackSec / desdemona

Data-backed security operations
Eclipse Public License 1.0
2 stars 7 forks source link

FalconHose ingestion #46

Closed ehashman closed 8 years ago

ehashman commented 8 years ago

We need to ingest alerts (chug?) from the FalconHose.

lvh commented 8 years ago

We get this through syslog. Adding support for all of the vendors is currently not in scope of Desdemona, given its experimental nature.