-
Notifications
You must be signed in to change notification settings - Fork 380
cisagov Malcolm Discussions
Sort by:
Latest activity
Categories, most helpful, and community links
Categories
Community links
Discussions
-
You must be logged in to vote ❓ -
You must be logged in to vote 😥 Bootable USB Errors during Installation
isorelating to the ISO-installed environment for Malcolm and/or Hedgehog -
You must be logged in to vote 🌟 -
You must be logged in to vote 😥 Help: I can’t load Threat Intelligence via misp.yaml in Malcolm
intelRelated to integration with threat intel feeds -
You must be logged in to vote ❓ -
You must be logged in to vote 😥 Hedgehog & Malcolm Communication is not happening
sensorFor issues dealing with the Hedgehog OS capture sensor -
You must be logged in to vote 😥 Zeek container startup is slow when using HDD and non-default UID/GID
zeekRelating to Malcolm's use of Zeek dockerRelating to docker and docker-compose as used by Malcolm performanceRelated to speed/performance -
You must be logged in to vote 💭 [Blog post] Building a network traffic analysis system: Deploying Malcolm on Amazon EC2
externalDepends on a bug or feature external to this project cloudRelating to deployment of Malcolm in the cloud and/or with Kubernetes -
You must be logged in to vote ❓ -
You must be logged in to vote 🌟 -
You must be logged in to vote 😥 Error starting graphical display with ISO-installed Malcolm on Gen 1 Hyper-V
isorelating to the ISO-installed environment for Malcolm and/or Hedgehog -
You must be logged in to vote 🌟 -
You must be logged in to vote 💭 ICCP zeek plugin - need assistance
zeekRelating to Malcolm's use of Zeek icsRelating to ICS (Industrial Control Systems) devices externalDepends on a bug or feature external to this project -
You must be logged in to vote 😥 Opensearch backup for migration to Remote Opensearch Cluster
opensearchRelating to Malcolm's use of OpenSearch performanceRelated to speed/performance -
You must be logged in to vote ❓ oinkcode (PRO code)
enhancementNew feature or request suricataRelating to Malcolm's use of Suricata -
You must be logged in to vote ❓ accessing PCAP for processing remotely?
uploadRelating to PCAP and/or Zeek log ingestion -
You must be logged in to vote 🌟 -
You must be logged in to vote 😥 Zeek Intel Framework - TAXII autogen failing
intelRelated to integration with threat intel feeds -
You must be logged in to vote 😮 -
You must be logged in to vote ❓ monitoring for data exfiltration
dashboardsRelating to Malcolm's OpenSearch Dashboards interface opensearchRelating to Malcolm's use of OpenSearch -
You must be logged in to vote 💭 -
You must be logged in to vote 💭 -
You must be logged in to vote 😥 Running MALCOM with collection in containerized install
captureRelating to pcap-capture container -
You must be logged in to vote 💭 Opensearch user management
enhancementNew feature or request opensearchRelating to Malcolm's use of OpenSearch securityRelated to issues with bearing on the security of Malcolm itself -
You must be logged in to vote 😥 PCAP Files Filling up HardDrive
captureRelating to pcap-capture container arkimeRelating to Malcolm's use of Arkime