Zeek Dashboard
Visualize zeek logs to investigate network traffic captures (pcap)
Using Zeek logs, we configure Grafana to view network pcaps creating visualizations like connection summaries, protocol breakdowns, and traffic volume trends. This enables users to efficiently monitor network activity, identify potential security threats, and analyze network behavior.
The idea is to use this as a template to create further customized dashboards specific to network security requirements of your organization.
Start here - https://github.com/hackertarget/pcap-did-what/
or jump into the full guide - https://hackertarget.com/zeek-geoip-asn-ja4/
Data source config
Collector config:
Upload an updated version of an exported dashboard.json file from Grafana
Revision | Description | Created | |
---|---|---|---|
Download |