Skip to content

A Logstash based solution to pull and convert Splunk IDS events into Savvius Vigil events

License

Notifications You must be signed in to change notification settings

spacepacket/vigil-splunk-parser

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

11 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Vigil Splunk Parser

A Logstash based solution to pull and convert Splunk events into Savvius Vigil events

This repository contains the instructions and files necessary to get IDS events from Splunk into Savvius Vigil. Splunk can be used as SIEM for virtually any IDS. In this example, we use snort.

Refer to the wiki for detailed instructions.

About

A Logstash based solution to pull and convert Splunk IDS events into Savvius Vigil events

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published