logo

Create enterprise monitoring at home with Zeek and Elk (Part 1)

ID: 0a3d76b0-aef9-5218-b8f7-81572814e18f

STIX ID: report--0a3d76b0-aef9-5218-b8f7-81572814e18f

Feed Name: On the Hunt

Date Published: 2020-04-16

Date Updated: 2026-04-19

Author: Paul Newton

...
...

This post is a step-by-step tutorial demonstrating how to deploy Zeek on an Ubuntu VM (hosted in VMware ESXi) and integrate it into a monitoring pipeline for later ingestion into the ELK stack; it covers prerequisites, network mirror configuration, enabling promiscuous mode, installing and configuring Zeek, and verifying collected logs, with a promise to cover ELK deployment in part 2.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.