简体   繁体   中英

Suricata gui instead snorby

Hello I am looking for some gui for Surricata IDS. I tried Snorby from Snort but it is impossible to install it nowadays due to ruby compatibility. Any idea what to use ? Thank you

If you are looking for rules management there is Scirius (I haven't tried it yet): https://github.com/StamusNetworks/scirius

For viewing the logs ingesting them into ELK stack seems to be the easiest way. Suricata logs are already in JSON format so logstash can easily read them and pass to Elasticsearch. You could also find some inspiration for dashboard here: https://github.com/StamusNetworks/KTS5

The technical post webpages of this site follow the CC BY-SA 4.0 protocol. If you need to reprint, please indicate the site URL or the original address.Any question please contact:yoyou2525@163.com.

 
粤ICP备18138465号  © 2020-2024 STACKOOM.COM