Details
-
Improvement
-
Status: To Do
-
Minor
-
Resolution: Unresolved
-
None
-
None
-
None
Description
I consider the current elasticsearch system, as provisioned via Metron, minimally viable and lacking some widely-accepted updates which can be broadly applied to the Metron use case. This issue is to track completion of those tasks.
Attachments
1.
|
Allow configuration of multiple Elasticsearch instances per server |
|
To Do | Unassigned | |||||||
2.
|
Add performance tuning settings to Elasticsearch |
|
To Do | Unassigned | |||||||
3.
|
Expand Elasticsearch templates to support the standard bro logs |
|
Done | Jon Zeolla |
|