New

The executive guide to generative AI

Read more
Loading

Suricata Integration

Version 2.24.0 (View all)
Compatible Kibana version(s) 8.7.1 or higher
9.0.0 or higher
Supported Serverless project types
What's this?
Security
Observability
Subscription level
What's this?
Basic
Level of support
What's this?
Elastic

This integration is for Suricata. It reads the EVE JSON output file. The EVE output writes alerts, anomalies, metadata, file info and protocol specific records as JSON.

This module has been developed against Suricata v4.0.4, but is expected to work with other versions of Suricata.