v2.4.110 AI #13850
-
Version2.4.100 Installation MethodSecurity Onion ISO image Descriptionother (please provide detail below) Installation TypeDistributed Locationon-prem with Internet access Hardware SpecsMeets minimum requirements CPU8 RAM32 Storage for /256 Storage for /nsm512 Network Traffic Collectiontap Network Traffic SpeedsLess than 1Gbps StatusYes, all services on all nodes are running OK Salt StatusNo, there are no failures LogsNo, there are no additional clues DetailThanks to the SO team for releasing SOv2.4.110! Couldn't find anything in the docs relating to how the new AI features work... so wanted to ask if specifics could be provided. Is AI performed all w/in SO (on-box) or are user detections/rules sent to a cloud AI service for summarization? Thanks again! Guidelines
|
Beta Was this translation helpful? Give feedback.
Replies: 1 comment
-
Hey there @argwfm! Nothing is sent from your Security Onion Grid to any AI/LLM provider. Your Grid is simply loading the pre- generated summaries, downloaded from our repo, found here: https://github.com/security-Onion-Solutions/securityonion-resources?tab=readme-ov-file#ai-generated-detection-summaries The summaries are built from an internal process using the community Detections and a LLM. This means that no custom Detections will have an AI-Generated summary. Let us know if we can clarify anything else. |
Beta Was this translation helpful? Give feedback.
Hey there @argwfm! Nothing is sent from your Security Onion Grid to any AI/LLM provider. Your Grid is simply loading the pre- generated summaries, downloaded from our repo, found here: https://github.com/security-Onion-Solutions/securityonion-resources?tab=readme-ov-file#ai-generated-detection-summaries
The summaries are built from an internal process using the community Detections and a LLM.
This means that no custom Detections will have an AI-Generated summary.
Let us know if we can clarify anything else.