Skip to content

Repository with logstash, elasticsearch and kibana configs. Palo Alto, Juniper, BlueCoat, etc.

Notifications You must be signed in to change notification settings

dee-shu/ELK-Networking

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

186 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

ELK-Networking

This repository contains different configurations for logstash 6.5.4, elasticsearch 6.5.4 and kibana 6.5.4.

Devices / Products included:

  • Firewall Palo Alto traffic and URL.
  • Firewall Juniper NetScreen.
  • Firewall Juniper SRX.
  • Bluecoat SG traffic.
  • Bluecoat SG SysLog.
  • Arbor Pravail DDoS.
  • Proxy Squid.
  • Nginx WebServer.

Logstash

Configuration files directory: /etc/logstash/conf.d/

Elasticsearch

Templates:

Just paste entire text files into your development console in Kibana.

Or execute this on your elasticsearch server:

curl -XPUT localhost:9200/_template/name -d ' { content } '

Kibana

Visualizations (import json on kibana -> Management -> Saved objects)

Dashboards (import json on kibana -> Management -> Saved objects)

Searches (import json on kibana -> Management -> Saved objects)

About

Repository with logstash, elasticsearch and kibana configs. Palo Alto, Juniper, BlueCoat, etc.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • Shell 100.0%