StamusNetworks / KTS6

Kibana 6 Templates for Suricata IDPS Threat Hunting
GNU General Public License v3.0
25 stars 6 forks source link

Connect to Suricata #14

Open MANN0M1 opened 2 years ago

MANN0M1 commented 2 years ago

How are Suricata and Kibana Dashboard connected? Because Kibana Dashboard does not display any graph

pevma commented 2 years ago

You would need to setup log forwarding / ELK stack. If you want a quick way to try it out - https://github.com/StamusNetworks/SELKS/blob/master/docker/README.rst

-- Regards, Peter Manev

On 29 Dec 2021, at 12:42, MANN0M1 @.***> wrote:

 How are Suricata and Kibana Dashboard connected? Because Kibana Dashboard does not display any graph

— Reply to this email directly, view it on GitHub, or unsubscribe. Triage notifications on the go with GitHub Mobile for iOS or Android. You are receiving this because you are subscribed to this thread.

MANN0M1 commented 2 years ago

perhaps ,Is there any guide for me to understand how to connect between Kibana and Suricata? I am still new to ELK. I also tried to follow the link you gave me, but I got the same result.

pevma commented 2 years ago

The easiest and fastest way to try it out on Linux would be - https://github.com/StamusNetworks/SELKS/blob/master/docker/README.rst#install-process