이 페이지의 콘텐츠는 선택하신 언어로 제공되지 않습니다. Elastic은 다양한 언어로 콘텐츠를 제공하기 위해 최선을 다하고 있습니다.조금만 더 기다려주세요!

On-demand webinar

Strengthen Your SIEM: Using Logstash to Connect ArcSight to the Elastic Stack

Hosted by:

Samir Bennacer, Octodet

Samir Bennacer, Octodet

Chief Technology Officer

Octodet

Nicholas Lim

Nicholas Lim

Consulting Architect

Elastic

Overview

As many of our users know, the Elastic Stack helps provide real-time insights into your data at massive scale.

With the release of Logstash 5.1, you can easily connect any device that supports the CEF data format as a codec to the Elastic Stack via files, kafka or syslog. This session will provide a step-by-step guide of how to extend and complement your existing ArcSight deployment with the Elastic Stack. Topics covered will include how to ingest CEF logs to the Elastic Stack using Logstash, visualising dashboards in Kibana, proactively monitoring security data in Elasticsearch using X-Pack alerting features and applying machine learning to identify potential suspicious signatures.

Video thumbnail