Scientific Linux 7.1 + ELK + Rivers

Are you interested in Elasticsearch, Logstash, Kibana, and Rivers (JDBC+MySQL)? Then this ELK guide is for you. We are building this with Scientific Linux 7.1 and the latest versions of each available at the moment. I sourced information on how to do this from: https://www.digitalocean.com/community/tutorials/how-to-install-elasticsearch-logstash-and-kibana-4-on-centos-7 http://www.elastic.co/guide/en/elasticsearch/reference/current/setup-repositories.html https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Security_Guide/sec-Using_Firewalls.html https://github.com/jprante/elasticsearch-jdbc Install SL 7.1 Find your local mirror:…

Logging and Incident Response

Security is a trick world and unless you want your hosts log files scrolling your SMS buffer on your phone, you have to enable something that allows some degree of automated response. Zabbix is certainly one of the more free and better tools in that element. Here I will log my progress with setting up…