BRO IDS integration with ELK Stack


(ruby) #1

I have installed BRO IDS and filebeat shipper on a System and ELK stack on another system
Now i want BRO -IDS alerts from one system to another,
what need to configure on ELK stack

one logstash configuration file
BRo index

is there any need of python script???
filebeat will ship IDS logs?


(system) #2

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.