Feature: HTTP Endpoint Support
Open
feature request
help wanted
roadmap
- Dominant language
- Python
- Stars
- 2.9k
- Forks
- 324
- PR merge metrics
- No merged PRs in 30d
Description
StreamAlert will also support receiving data via an HTTP endpoint. This is for service providers or appliances that support HTTP endpoints for logging. Example: Akamai, OneLogin: https://support.onelogin.com/hc/en-us/articles/215214143-Streaming-Real-Time-OneLogin-Event-Data-to-your-SIEM-Solution
Contributor guide
Research direction
The issue names no files, tests, or entry points. Start by locating StreamAlert’s existing datasource ingestion path and determine how an HTTP source would support providers such as Akamai and OneLogin; done means HTTP-delivered logging data is accepted and analyzed by the framework.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- aws, python
- Domain
- api, backend
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100