logo

Home Monitoring: Sending Zeek logs to ELK

ID: 35d88abc-e02a-58eb-bd78-71267f013512

STIX ID: report--35d88abc-e02a-58eb-bd78-71267f013512

Feed Name: On the Hunt

Date Published: 2020-06-25

Date Updated: 2026-04-19

Author: Paul Newton

...
...

This post is a step-by-step guide for setting up an ELK stack and shipping Zeek (and optionally Suricata) logs into Elasticsearch using Filebeat, covering installation, configuration changes (binding addresses, JSON log conversion), module enablement, and basic validation of data ingestion.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.