weslambert / securityonion-misp

GNU General Public License v3.0
34 stars 6 forks source link

securityonion-misp

Grab NIDS rules and Zeek Intel generated from a MISP instance and use them in Security Onion:
See: https://www.circl.lu/doc/misp/automation/#nids-rules-export

Prerequisites:

Download and Configure (on Master or Standalone)

A cron job will run every morning at 6:01AM to download new NIDS rules and Intel.