Skip to content

SEIM (data security log analysis tool). Inspired by matano, executes completely within gcp

Notifications You must be signed in to change notification settings

DIvkov575/Beaver

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Beaver SIEM (data security log analysis tool)

Todo:

l_0

  • crj shutoff
  • missing '{}' as second arg in last .get() chain method call

l_1

  • add sa delegation
  • destructured log -> bq
  • logging

Ideas

  • disabling detections_gen.py regeneration
  • batching -> deduplication + writes (after log destructuring) (increase bq write efficiency)

left off on create crs


create bq create pubsub topic (1) + subscription (2) (bq) (general) create bucket

create crj -> bucket & pubsub create df -> bucket & pubsub


gcp log sink logs not appearing in pubsub

About

SEIM (data security log analysis tool). Inspired by matano, executes completely within gcp

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published