Slide 6
Slide 6 text
Implementation tl;dr
● Data source
logstash input { }
{packet,file}beat
POST :9200
● Document Store
Elasticsearch on-
premise, Found, Docker,
etc.
SaaS Options
● Visualization
Kibana runs in-browser
Access controls/basic
auth supported
Really, anything that can
throw JSON at a REST
endpoint
Scaled appropriately (1 -
??? nodes)
Most settings are stored
in an Elasticsearch index;
simple deployment