dlumbrer / dlumbrer/kbn_network
node-node-node option
- Dominant language
- JavaScript
- Stars
- 366
- Forks
- 94
- PR merge metrics
- No merged PRs in 30d
Description
This is a great plugin, and what would really make it work for my use case would be a node-node-node mode so that we could graph thing like NIDS/HIDS events that consist of 3-tuples like {source IP, event, and destination IP}. I have long used AfterGlow and Graphviz to do that but would love to do it in the context of Kibana. I am looking to be able to make something that looks somewhat like [this](https://blog.rootshell.be/wp-content/uploads/2011/10/ossec-alerts.gif).
Kevin
Contributor guide
No contributing guide indexed for this repository
Research direction
The issue names no files, tests, or entry points; it requests a new Kibana visualization mode for three-tuples from NIDS/HIDS events. Start by locating the plugin’s existing graph-mode implementation and configuration, then compare the behavior with the linked OSSEC example and define how source, event, and destination should appear.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- elasticsearch, javascript
- Domain
- data-visualization
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100