dshield-siem-docker-updates,-(thu,-feb-13th)

Throughout the previous weeks, I have been experimenting with several improvements to the DShield SIEM, aimed at handling DShield sensor logs from both local and cloud sensors utilizing Filebeat along with Filebeat modules. This setup allows for straightforward transmission of Zeek and NetFlow logs back to a local network ELK stack through home router NAT configuration. Below is a compilation of updates and improvements:


Leave a Reply

Your email address will not be published. Required fields are marked *

Share This