- Joined
- Jan 8, 2019
- Messages
- 56,623
- Solutions
- 2
- Reputation
- 32
- Reaction score
- 100,456
- Points
- 2,313
- Credits
- 32,750
6 Years of Service
76%

Security Onion
Security Onion is a free and open-source Linux distribution for intrusion detection, enterprise security monitoring, and log management. It includes Elasticsearch, Logstash, Kibana, Snort, Suricata, Bro, OSSEC, Sguil, Squert, NetworkMiner, and many other security tools. The easy-to-use Setup wizard allows you to build an army of distributed sensors for your enterprise in minutes!
Below are several diagrams to represent the current architecture and deployment scenarios for Security Onion on the Elastic Stack.
Changelog v2.3.170
FEATURE: Events table(s) for Windows Events matching default view #8591
FEATURE: Split the winlog.event_data.Hashes field for Windows sysmon process creation events. #8593
FIX: Mapping error when trying to index Strelka logs generated from ELF files. #8592
UPGRADE: Elastic 8.4.1 #8794
UPGRADE: Zeek 4.0.9 #8774
To see this hidden content, you must like this content.