Peter Czanik · @PCzanik
303 followers · 543 posts · Server fosstodon.org

It's fun when you read a documentation and suddenly you see that integration with the software you work on is documented. You open the page, and suddenly there is a link to your blog:

zincsearch-docs.zinc.dev/inges

So, yes, works with , just like , @OpenSearchProject or :)

#zinc #syslog_ng #elasticsearch #humio

Last updated 1 year ago

Charles U. Farley (he/him) · @freakazoid
1099 followers · 26922 posts · Server retro.social

I suspect anyone who thinks , err sorry "CrowdStrike Falcon LogScale", is an acceptable replacement for has never done anything particularly interesting with SumoLogic.

#humio #sumologic

Last updated 1 year ago

Peter Czanik · @PCzanik
259 followers · 312 posts · Server fosstodon.org

One of the most popular destinations in is (and , ,
, etc.). The 12th part of my syslog-ng shows you how to send log messages to Elasticsearch.

youtu.be/44rFCmSdb6M

#syslog_ng #elasticsearch #opensearch #zinc #humio #tutorial #youtube

Last updated 2 years ago

cygnetix :unverified:​ · @cygnetix
401 followers · 136 posts · Server infosec.exchange

@Solaris not so much KQL these days, after changing jobs, but there's some fantastic resources available.

I've long considered logging solutions (, , , etc) as being like a defender's eyes and ears. Leaning a query language well, such as KQL, is time invested that will continue to pay dividends.

Have you come across yet?
github.com/SigmaHQ/sigma

#splunk #sentinel #humio #elastic #sigma

Last updated 2 years ago