Skip to content

This is a logstash parser that will enable the processing of IVRE json logs and enable storage on Elasticsearch.

License

Notifications You must be signed in to change notification settings

cyhook/IVRE-DRUNK-Logstash-Parser

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

6 Commits
 
 
 
 
 
 

Repository files navigation

IVRE-DRUNK-Logstash-Parser

This IVRE parser caters for only Nmap scans that you would like to display on your ELK stack. Link to IVRE - https://ivre.rocks/

The logstash parser will enable the processing of IVRE json logs.

  1. Update and upgrade linux distribution
  2. Install Java 8
  3. Install Logstash - https://www.elastic.co/products/logstash
  4. Add the parser to your directory /etc/logsgtash/conf.d/ and run logstash

About

This is a logstash parser that will enable the processing of IVRE json logs and enable storage on Elasticsearch.

Topics

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published