Does Search-guard support Reporting/Alerts?

Hello there.

We are evaluating Search-Guard(SG) for our ELK cluster on AWS. We need to have reporting and alert features for abnormal events or something.

Does SG support reporting and alert features on ELK? If so, could you please share the documents?

This is kind of urgent, we need to make decision very soon.

Thanks a lot

Li

Search Guard does not provide Alerting out of the box. You have three major options:

···

On Sunday, August 26, 2018 at 6:33:14 PM UTC-4, Li Cui wrote:

Hello there.

We are evaluating Search-Guard(SG) for our ELK cluster on AWS. We need to have reporting and alert features for abnormal events or something.

Does SG support reporting and alert features on ELK? If so, could you please share the documents?

This is kind of urgent, we need to make decision very soon.

Thanks a lot

Li

Thank you

···

On Sunday, August 26, 2018 at 10:40:45 PM UTC-5, Jochen Kressin wrote:

Search Guard does not provide Alerting out of the box. You have three major options:

  • ElastAlert (an OSS alerting solution powered by Yelp)

On Sunday, August 26, 2018 at 6:33:14 PM UTC-4, Li Cui wrote:

Hello there.

We are evaluating Search-Guard(SG) for our ELK cluster on AWS. We need to have reporting and alert features for abnormal events or something.

Does SG support reporting and alert features on ELK? If so, could you please share the documents?

This is kind of urgent, we need to make decision very soon.

Thanks a lot

Li