graylog-plugin-threatintel
graylog-plugin-threatintel copied to clipboard
feature: lookup against elasticsearch index
This might be a generic pipeline function, but it's very useful specifically for threatintel Looking up against a dedicated index of IOCs and adding a field that would generate an alert
This is currently not on the roadmap but I'll keep the issue open.