Skip to content

joshlemon/sof-elk_dashboards

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

23 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

SOF-ELK DFIR Dashboards

These are a few SOF-ELK Dashboards that I've built and found useful for DFIR Cases. You're welcome to use these or suggest updates to them via Pull request.

A lot of these Dashboards were developed from performing Cloud log analysis, but hopefully it will include others....as I get time to create them.

Dashboards

These dasboards are for the current version of SOF-ELK using the Elastic Common Schema (ECS)

Pre-ECS Dashboards (Older SOF-ELK)

These dasboards are for the pre-ECS version of SOF-ELK before it was upgrade to include the Elastic Common Schema (ECS).

Import Instructions

Step 1

Step 1

Step 2

Step 2

Step 3

Step 3

Step 4

Step 4

Step 5

Step 5

About

No description, website, or topics provided.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors