Does anyone succeeded in bringing Netflow logs for PAN with SO? Or is anyone having parsers for PAN so that it can be integrated with SO?
Blason
If you looking at a SOC Orchestration solution that integrates well with PAN and SO then you should look at Phantom. Which is what I am currently doing. Our network is protected by a cluster of 7000 series and 5650 as well as some SRX's. This is why I started investigating Phantom 2 years ago. It also facilitates the integration of SO into it.
Jesus
--
Follow Security Onion on Twitter!
https://twitter.com/securityonion
---
You received this message because you are subscribed to a topic in the Google Groups "security-onion" group.
To unsubscribe from this topic, visit https://groups.google.com/d/topic/security-onion/90BmGYhvWjk/unsubscribe.
To unsubscribe from this group and all its topics, send an email to security-onio...@googlegroups.com.
To post to this group, send email to securit...@googlegroups.com.
Visit this group at https://groups.google.com/group/security-onion.
For more options, visit https://groups.google.com/d/optout.
You received this message because you are subscribed to the Google Groups "security-onion" group.
To unsubscribe from this group and stop receiving emails from it, send an email to security-onio...@googlegroups.com.