Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

有支持ZEEK的计划么 #33

Open
foxhack opened this issue Oct 15, 2020 · 4 comments
Open

有支持ZEEK的计划么 #33

foxhack opened this issue Oct 15, 2020 · 4 comments
Labels
enhancement New feature or request

Comments

@foxhack
Copy link

foxhack commented Oct 15, 2020

请问一下,有支持ZEEK的计划么?
如果没有,可以在此基础上进行集成zeek么,有没有相关的文档支持,非常感谢

@mflu
Copy link
Collaborator

mflu commented Feb 3, 2021

暂时还没有, 目前我们的场景suricata还够用, 也欢迎社区的同学们尝试集成一下ZEEK 反馈回来

@mflu mflu added the enhancement New feature or request label Feb 20, 2021
@snoopy7713
Copy link

想讨论qnsm的请联系俺QQ: 16200780 添加备注github qnsm

@xx-zhang
Copy link

xx-zhang commented Apr 2, 2022

请问一下,有支持ZEEK的计划么? 如果没有,可以在此基础上进行集成zeek么,有没有相关的文档支持,非常感谢

dpdk/pfring 抓包 --> suricata + zeek 本来就可以,用suricata输出告警,zeek全审计,用community-id进行关联

@snoopy7713
Copy link

已经新建主题分享资源,不必加QQ了。

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

4 participants