How to create rule alert brute force

I am using ELK 5.1. Please help create rule aler t via email : dos attack, brute force . thank for all!

Please take your time to explain your use-case properly. This is a bad description without any information, i.e.

  • Full explanation of your use-case
  • How does your data look like
  • When should an alert be triggered
  • What is the definition of a brute force attack inside of your dataset
  • What is the definition of a dos force attack inside of your dataset

Just dumping such a kind of very generic question will not result in any help.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.