Private GIT

Skip to content
Snippets Groups Projects
Commit 9bd0b496 authored by molu8bits@gmail.com's avatar molu8bits@gmail.com
Browse files

Merge remote-tracking branch 'origin/master'

parents 86c0b3ee 916f271a
Branches master
No related tags found
No related merge requests found
# Snort2 grafana dashboard
<h2>Snort2 grafana dashboard</h2>
While some IDS/IPS systems still wait for upgrade to Snort3 where JSON logging is available (or Suricata) it may be useful give elasticity of logs handling given by Elasticsearch and Grafana for Snort2
Project is based on existing grafana security dashboard [Security center](https://grafana.com/dashboards/3099)
but removes existing hard-coded dependencies and provides all configuration details for Snort, Barnyard2, Elasticsearch and Grafana.
This tag works with ELK stack version 6.5
Logs flow and components:
![](_images/flow01.png)
Example dashboards:
<h4>Example dashboards:</h4>
![](_images/4f567057.png)
......@@ -35,7 +36,7 @@ Output for snort log is set to elasticsearch and index name like snortids-%YY-%M
Just connects to defined Elasticsearch clusters:
<p>EL datasource definition (before importing Grafana dashboard):</p>
<p>Elasticsearch datasource definition (before importing Grafana dashboard):</p>
![](_images/elasticsearch-datasource01.png.png)
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment