I'm using ELK 7.6 with siem and we have cisco switches and fortigate firewall.
Is there prebuilt siem rules for cisco IOS and fortigate?
We do not have any as right now, but it might be useful to create an issue or a PR in this repo https://github.com/elastic/detection-rules
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.