tpotce/docker/elk
t3chn0m4g3 f11ad6b523 tweaking
ELK 7.6.0 is not ready for production, however it works if APM is enabled (disabled in config, so image wont build as precaution)
Remove SISSDEN from ewsposter, suricata
Bump suricata to 5.0.1
Alpine now support suricata incl. enabled JA3 support, move back to Alpine install
2020-02-14 15:28:06 +00:00
..
doc Start cleaning up and update documentation 2017-10-23 13:02:04 +02:00
elasticsearch tweaking 2020-02-14 15:28:06 +00:00
head elk 7.x dev test 2020-01-31 14:21:55 +00:00
kibana tweaking 2020-02-14 15:28:06 +00:00
logstash tweaking 2020-02-14 15:28:06 +00:00
docker-compose.yml cleanup 2020-02-03 12:59:21 +00:00
LICENSE include docker repos 2017-10-13 18:58:14 +00:00
README.md cleanup 2019-03-01 21:08:36 +00:00

Elasticsearch

Logstash

Kibana

elk stack

elk is a stack combining elasticsearch, logstash and the kibana dashboard. It is used to structure and visualize data in realtime.

This dockerized version is part of the T-Pot community honeypot of Deutsche Telekom AG.

The Dockerfiles contain the blueprint for the dockerized elk stack and will be used to setup the docker images.

T-Pot Dashboard

T-Pot Dashboard