dsiem
dsiem copied to clipboard
Security event correlation engine for ELK stack
Bumps [golang.org/x/text](https://github.com/golang/text) from 0.3.7 to 0.3.8. Commits 434eadc language: reject excessively large Accept-Language strings 23407e7 go.mod: ignore cyclic dependency for tagging b18d3dd secure/precis: replace bytes.Compare with bytes.Equal 795e854 all: replace...
Hi there, I have followed the instructions and also modified the docker composer file but I it seems like disem is unable to connect to the elasticsearch database. I don't...
need help on updated json format with HTTPS
HI,I have encountered some problems in operation, I want to modify the rule value of directives.json, but I don't know how to ensure that he can successfully read the modified...
* remove erroneous implementation for splitting custom data value by comma
I am hosting dsiem on [Oracle Ampere](https://www.oracle.com/cloud/compute/arm/) instances with os/arch `linux/arm64`. After checking the release code, I was able to build a `linux/arm64` image, albeit with a little _arm twisting_....
Is it possible to create a directive that is the AND of three rules that is order independent? For example, I would like to trigger when rule A, rule B...
We are trying to send ossec logs from logstash to Dsiem without using Elastic search. Below is the logstash configuration... what output pllugin is required to get desired work done....
The !IP address and :1 functions are operational. But when writing a rule, it is not supported to have an IP different from the previous stage in the form of...
Bumps [ejs](https://github.com/mde/ejs) from 3.1.8 to 3.1.10. Release notes Sourced from ejs's releases. v3.1.10 Version 3.1.10 v3.1.9 Version 3.1.9 Commits d3f807d Version 3.1.10 9ee26dd Mocha TDD e469741 Basic pollution protection 715e950...