Saturday, October 3, 2020

[OC]Firewall Log Geo-Analysis using ELK Stack

Imgur

The blue markers on the Map show the geolocation of Public IPs and the connecting lines are the users connecting to the internet on our premises. Trying to find out a way to recognize DDoS and other types of attacks using the firewall logs. Constructive criticism is welcomed.

Tools: ELK Stack



No comments:

Post a Comment