idaholab / Malcolm

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
https://idaholab.github.io/Malcolm/
Other
327 stars 53 forks source link

Asset Interaction Analysis #425

Open mmguero opened 4 months ago

mmguero commented 4 months ago

For what topic would you like to see training developed? With videos being in place for netbox overview/populating, let's do one about how to actually visualize/use that data in the dashboards.

What format would be best suited for this training? A video

Is there existing Malcolm documentation that could be improved by including this topic?

Compare and highlight discrepancies between NetBox inventory and observed network traffic