-
Notifications
You must be signed in to change notification settings - Fork 407
cisagov Malcolm Q-a Discussions
Pinned Discussions
Sort by:
Latest activity
Categories, most helpful, and community links
Categories
Community links
❓ Q&A Discussions
-
You must be logged in to vote ❓ Alerts visualization / Alerts dashboard
alertingRelated to Malcolm's use of alerting -
You must be logged in to vote ❓ Integration With Firewall/IPS for Autonomous Response
externalDepends on a bug or feature external to this project -
You must be logged in to vote ❓ Upgrade Hedgehog
sensorFor issues dealing with the Hedgehog OS capture sensor upgradeRelated to the Malcolm/Hedgehog upgrade process -
You must be logged in to vote ❓ Allow Arkime WISE Configuration
arkimeRelating to Malcolm's use of Arkime -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ Hedgehog bandwidth
performanceRelated to speed/performance sensorFor issues dealing with the Hedgehog OS capture sensor -
You must be logged in to vote ❓ Auto ingestion of pcap with unprocessed folder
uploadRelating to PCAP and/or Zeek log ingestion -
You must be logged in to vote ❓ Delete sessions & pcap
uploadRelating to PCAP and/or Zeek log ingestion opensearchRelating to Malcolm's use of OpenSearch -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ Granular permissions
authRelated to Malcolm's authentication and/or user management -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ oinkcode (PRO code)
enhancementNew feature or request suricataRelating to Malcolm's use of Suricata -
You must be logged in to vote ❓ accessing PCAP for processing remotely?
uploadRelating to PCAP and/or Zeek log ingestion -
You must be logged in to vote ❓ monitoring for data exfiltration
dashboardsRelating to Malcolm's OpenSearch Dashboards interface opensearchRelating to Malcolm's use of OpenSearch -
You must be logged in to vote ❓ Malcolm and Suricata alert IP association issue
suricataRelating to Malcolm's use of Suricata -
You must be logged in to vote ❓ -
You must be logged in to vote ❓ Questions about ENV_PCAP_FILTER
captureRelating to pcap-capture container