Suricata now Integrates with ELK: SELKS 3.0
-
Hi All,
We had a question about Intrustion Detection systems recently... I'm a long time fan of Open Source tools like Snort (www.snort.org) and Suricata (https://oisf.net/suricata/).
We've also heard a bit about the ELK stack from folks like @scottalanmiller . I just happened to see in my inbox this morning a project I had forgotten about. it's called SELKS. Basically, it integrates Suricata, the ELK stack, and a couple of other tools to create what looks like quite a useful IDS package.
I'll quit writing now so you can go check out the tools: https://www.stamus-networks.com/open-source/
Or read the blog article here: https://www.stamus-networks.com/2016/08/12/the-third-selks-is-out/
-
Nice!
-
Yeah. I really enjoy working with Suricata. At the time I was using it heavily, there weren't any very good tools around that I was aware of. It's nice to see it getting some much needed modernization!