Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

NetFlow v9 input #248

Closed
mmguero opened this issue Aug 22, 2023 · 2 comments
Closed

NetFlow v9 input #248

mmguero opened this issue Aug 22, 2023 · 2 comments
Labels
enhancement New feature or request logstash Relating to Malcolm's use of Logstash

Comments

@mmguero
Copy link
Collaborator

mmguero commented Aug 22, 2023

A user requested we look into accepting NetFlow v9 as a flow data source. I believe there are netflow inputs for logstash and filebeat already, so the plumbing is there. The majority of the work would be in normalizing the flow data to match, but there's a good chance that it's already going to be targeting ECS anyway.

@mmguero mmguero added enhancement New feature or request logstash Relating to Malcolm's use of Logstash labels Aug 22, 2023
@mmguero mmguero added this to Malcolm Aug 22, 2023
@mmguero mmguero moved this to Todo in Malcolm Sep 5, 2023
@mmguero mmguero moved this from Todo to Todo (investigate) in Malcolm Nov 14, 2023
@StammesOpfer
Copy link

Maybe some collab?
arkime/arkime#1617

@mmguero mmguero added this to the z.staging milestone Mar 27, 2024
@mmguero mmguero removed this from the z.staging milestone May 15, 2024
@mmguero
Copy link
Collaborator Author

mmguero commented Nov 5, 2024

Kamino closed and cloned this issue to cisagov/Malcolm

@mmguero mmguero closed this as completed Nov 5, 2024
@github-project-automation github-project-automation bot moved this from Todo (investigate) to Done in Malcolm Nov 5, 2024
@mmguero mmguero moved this from Done to Migrated in Malcolm Nov 5, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request logstash Relating to Malcolm's use of Logstash
Projects
Status: Migrated
Development

No branches or pull requests

2 participants