# Elasticesearch and event correlation

**URL:** <https://discuss.elastic.co/t/elasticesearch-and-event-correlation/12315>\
**Category:** Elasticsearch\
**Created:** [June 7, 2013, 8:35am UTC](https://discuss.elastic.co/t/elasticesearch-and-event-correlation/12315 "2013-06-07T08:35:22Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![John\_Zhang](https://avatars.discourse-cdn.com/v4/letter/j/b9e5f3/32.png) [@John\_Zhang](https://discuss.elastic.co/u/John_Zhang)\
**Post date:** [June 7, 2013, 8:35am UTC](https://discuss.elastic.co/t/elasticesearch-and-event-correlation/12315/1 "2013-06-07T08:35:22Z")

</div>

Hi guys,

I am one newer for elasticesearch.

I am trying ElasticSearch +Kibana + Logstash for my security log  
management, I also need do event correlation on this platform, like what  
Simple Event Correlator (SEC, [http://simple-evcorr.sourceforge.net/](http://simple-evcorr.sourceforge.net/)) do.

My question is:  
How I do event correlation with ElasticSearch +Kibana + Logstash? Or Can I  
make SEC work with ElasticSearch +Kibana + Logstash?

Any suggestion, comment will be highly appreciated!

Thanks!

Best regards,  
John

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

---

<div class="post-metadata">

**Author:** ![Jason\_Weber](https://avatars.discourse-cdn.com/v4/letter/j/8baadc/32.png) [@Jason\_Weber](https://discuss.elastic.co/u/Jason_Weber)\
**Post date:** [February 4, 2014, 9:07pm UTC](https://discuss.elastic.co/t/elasticesearch-and-event-correlation/12315/2 "2014-02-04T21:07:18Z")

</div>

John,  
Same questions, did you ever figure anything out on this?

Jason

On Friday, June 7, 2013 4:35:22 AM UTC-4, John Zhang wrote:

> Hi guys,
> 
> I am one newer for elasticesearch.
> 
> I am trying Elasticsearch +Kibana + Logstash for my security log  
> management, I also need do event correlation on this platform, like what  
> Simple Event Correlator (SEC, [http://simple-evcorr.sourceforge.net/](http://simple-evcorr.sourceforge.net/)) do.
> 
> My question is:  
> How I do event correlation with Elasticsearch +Kibana + Logstash? Or Can  
> I make SEC work with Elasticsearch +Kibana + Logstash?
> 
> Any suggestion, comment will be highly appreciated!
> 
> Thanks!
> 
> Best regards,  
> John

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/b4d3f19f-534c-4f05-88e0-23770c4638fd%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/b4d3f19f-534c-4f05-88e0-23770c4638fd%40googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 5, 2017, 11:25pm UTC](https://discuss.elastic.co/t/elasticesearch-and-event-correlation/12315/4 "2017-07-05T23:25:03Z")

</div>


