Skip to content
Discussion options

You must be logged in to vote

Sometimes SIEM means different things to different people, so you might start by defining exactly what features you're looking for.

You could also try Security Onion and see if it gives you those features you need. If you need to later enable the Elastic SIEM inside Security Onion, you can certainly do that.

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@oneCrazyAdmin
Comment options

Answer selected by dougburks
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
2 participants