[Bro] Frontend

Doug Burks doug.burks at gmail.com
Tue Oct 22 10:14:04 PDT 2013


Hi James,

Have you considered ELSA?
https://code.google.com/p/enterprise-log-search-and-archive/wiki/Documentation

Also see:
https://www.youtube.com/watch?v=33HZyIxbg6c&list=PLMN5wm-C5YjyieO63g8LbaiWTSJRj0DBe



On Tue, Oct 22, 2013 at 12:57 PM, James Lay <jlay at slave-tothe-box.net> wrote:
> Hey all!
>
> So...I'm looking for SOMETHING that will allow me to parse and
> aggregate bro, snort, and firewall logs.  I've looked at logstash, but
> the latest version seems poorly documented...everything that I wanted to
> try took ages to figure out.  Anyone have anything that will accomplish
> something like this?  Thanks all.
>
> James
> _______________________________________________
> Bro mailing list
> bro at bro-ids.org
> http://mailman.ICSI.Berkeley.EDU/mailman/listinfo/bro



-- 
Doug Burks
http://securityonion.blogspot.com



More information about the Bro mailing list