Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

extend intel.log with additional fields using corelight/ExtendIntel #502

Open
7 tasks
mmguero opened this issue Nov 19, 2024 · 0 comments
Open
7 tasks

extend intel.log with additional fields using corelight/ExtendIntel #502

mmguero opened this issue Nov 19, 2024 · 0 comments
Labels
arkime Relating to Malcolm's use of Arkime dashboards Relating to Malcolm's OpenSearch Dashboards interface enhancement New feature or request external Depends on a bug or feature external to this project intel Related to integration with threat intel feeds logstash Relating to Malcolm's use of Logstash zeek Relating to Malcolm's use of Zeek
Milestone

Comments

@mmguero
Copy link
Collaborator

mmguero commented Nov 19, 2024

We could be getting more useful information from our zeek intelligence matches, and this plugin can help us do that

@mmguero mmguero added enhancement New feature or request external Depends on a bug or feature external to this project zeek Relating to Malcolm's use of Zeek labels Nov 19, 2024
@mmguero mmguero added this to the z.staging milestone Nov 19, 2024
@mmguero mmguero added this to Malcolm Nov 19, 2024
@mmguero mmguero moved this to Todo (develop) in Malcolm Nov 19, 2024
@mmguero mmguero added intel Related to integration with threat intel feeds logstash Relating to Malcolm's use of Logstash arkime Relating to Malcolm's use of Arkime dashboards Relating to Malcolm's OpenSearch Dashboards interface labels Nov 19, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
arkime Relating to Malcolm's use of Arkime dashboards Relating to Malcolm's OpenSearch Dashboards interface enhancement New feature or request external Depends on a bug or feature external to this project intel Related to integration with threat intel feeds logstash Relating to Malcolm's use of Logstash zeek Relating to Malcolm's use of Zeek
Projects
Status: Todo (develop)
Development

No branches or pull requests

1 participant