logisland
v0.10.0-rc1
Introduction
Core concepts
Architecture
Developer Guide
Tutorials
Index Apache logs
Index Apache logs Enrichment
Alerts & Query Matching
Time series sampling & Outliers detection
Bro/Logisland integration - Indexing Bro events
Netflow/Logisland integration - Handling Netflow traffic
Capturing Network packets in Logisland
API design
Components
What’s new in logisland ?
Frequently Asked Questions.
logisland
Docs
»
Tutorials
Edit on GitHub
Tutorials
ΒΆ
Chat with us on Gitter
Download the
latest release build
and unzip on an edge node.
Contents:
Index Apache logs
1. Start LogIsland as a Docker container
2. Parse the logs records
3. Inject some Apache logs into the system
4. Monitor your spark jobs and Kafka topics
5. Use Kibana to inspect the logs
Index Apache logs Enrichment
1. Start LogIsland as a Docker container
2. Inject some Apache logs into the system
3. Monitor your spark jobs and Kafka topics
4. Use Kibana to inspect the logs
Alerts & Query Matching
1. Setup SQL Aggregation Stream
2. Setup Query matching Stream on log Records
3. Setup Query matching Stream
4. Start logisland application
5. Check your alerts with Kibana
Time series sampling & Outliers detection
1. Setup the time series collection Stream
2. Setup the Outliers detection Stream
3. Setup the time series Sampling Stream
4. Setup the indexing Stream
4. Start logisland application
5. Check your alerts with Kibana
Bro/Logisland integration - Indexing Bro events
Bro and Logisland
Tutorial environment
1. Start the Docker container with LogIsland
2. Transform Bro events into Logisland records
3. Start the Docker container with Bro
4. Configure Bro to send events to Kafka
5. Generate some Bro events and notices
Netflow/Logisland integration - Handling Netflow traffic
Netflow and Logisland
Tutorial environment
1. Start LogIsland as a Docker container
2. Configuration steps
3. Parse Netflow records
4. Inject Netflow events into the system
5. Monitor your spark jobs and Kafka topics
6. Use Kibana to inspect events
Capturing Network packets in Logisland
1. Network Packets
2. Tutorial environment
3. Start LogIsland as a Docker container
4. Parse Network Packets
5. Stream network packets into the system
6. Monitor your spark jobs and Kafka topics
7. Use Kibana to inspect records
Read the Docs
v: v0.10.0-rc1
Versions
latest
stable
v0.10.0-rc1
Downloads
On Read the Docs
Project Home
Builds
Free document hosting provided by
Read the Docs
.