Loading

Suricata Integration

<div class="condensed-table">
| | |
| --- | --- |
| Version | 2.21.4 (View all) |
| Compatible Kibana version(s) | 8.7.1 or higher |
| Supported Serverless project types
What’s this? | Security
Observability |
| Subscription level
What’s this? | Basic |
| Level of support
What’s this? | Elastic |

</div>
This integration is for Suricata. It reads the EVE JSON output file. The EVE output writes alerts, anomalies, metadata, file info and protocol specific records as JSON.

This module has been developed against Suricata v4.0.4, but is expected to work with other versions of Suricata.