net2elk
network tool for generate logs in elasticsearch as tcpdump
Project developed exclusively for educational purposes, use at your own risk
To configure the elasticsearch acces edit the file net-logger/src/elk/elasticsearch.rs
Prerequisites
- Install bpf-linker:
cargo install bpf-linker
Build eBPF
cargo xtask build-ebpf
To perform a release build you can use the --release
flag.
You may also change the target architecture with the --target
flag.
Build Userspace
cargo build
Build eBPF and Userspace
cargo xtask build
Run
RUST_LOG=info cargo xtask run
elasticsearch
To configure the elasticsearch acces edit the file net-logger/src/elk/elasticsearch.rs
Description
Languages
Rust
100%