corelight / ecs-logstash-mappings

Mapping Corelight or Zeek data to Elastic Common Schema logs
BSD 3-Clause "New" or "Revised" License
12 stars 6 forks source link

Corelight ECS Logstash Pipeline

The repository is compromised of Logstash Pipeline files required to be used with the installer script in the repository
https://github.com/corelight/ecs-templates

The installer in that repository will download the files from this repository therefore using this repository directly is not required nor recommended.

License

The files and automation script are open-source under a BSD license. See COPYINGfor details.

Github Repository Definitions

Elasticsearch templates

https://github.com/corelight/ecs-templates

Logstash Pipelines (This Repository)

https://github.com/corelight/ecs-logstash-mappings

Ingest Pipelines

https://github.com/corelight/ecs-mapping

Kibana Dashboards and Visualizations

https://github.com/corelight/ecs-dashboards

Kibana Security Rules and Alerts

https://github.com/corelight/Elasticsearch_rules