Create enterprise monitoring at home with Zeek and Elk (Part 1)
ID: 0a3d76b0-aef9-5218-b8f7-81572814e18f
STIX ID: report--0a3d76b0-aef9-5218-b8f7-81572814e18f
Feed Name: On the Hunt
This post is a step-by-step tutorial demonstrating how to deploy Zeek on an Ubuntu VM (hosted in VMware ESXi) and integrate it into a monitoring pipeline for later ingestion into the ELK stack; it covers prerequisites, network mirror configuration, enabling promiscuous mode, installing and configuring Zeek, and verifying collected logs, with a promise to cover ELK deployment in part 2.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
