aws-samples/siem-on-amazon-opensearch-service
A solution for collecting, correlating and visualizing multiple types of logs to help investigate security incidents.
PythonMIT-0
Issues
- 1
Support for Opensearch 2.13 / 2.15 / 2.17
#460 opened by devvick - 0
aes-siem-es-loader [ERROR] KeyError: '@id'
#464 opened by iizuka-1112 - 1
EKS Audit Log Collected by Security Lake Not Loaded
#459 opened by yusukex2 - 1
- 4
- 0
- 3
- 0
AWS lambda log investigate
#458 opened by s25arunkumar - 0
Amplify Support
#455 opened by rsi-mrobinson - 0
Add metadata to Amazon VPC flow logs
#454 opened by teppeikamohara - 0
[ERROR] KeyError: 'userIdentity.type'
#449 opened by jamaaljackson - 0
- 1
Object mapping for [requestParameters.map.groupBy] tried to parse field [groupBy] as object, but found a concrete value
#447 opened by FerFabbiano - 0
Support a method to directly ingest logs from the S3 bucket of Security Lake
#443 opened by valmet083 - 0
- 0
- 1
CloudTrail load: Error on requestParameters.overrides.containerOverrides.environment due to varied type
#430 opened by kkumler - 0
object mapping for [requestParameters.overrides.containerOverrides.environment] tried to parse field [environment] as object
#446 opened by duffybelfield - 0
- 0
An error occurred (ValidationException) when calling the UpdateDomainConfig operation
#444 opened by nakajiak - 5
- 1
Deploy with VPC endpoint
#429 opened by rom1spi - 1
Slow es-loader with warning
#438 opened by duffybelfield - 3
Support for Opensearch 2.11
#432 opened by stevec1980 - 0
Runtime.ImportModuleError: Unable to import module 'lambda_function': cannot import name 'is_s3express_bucket' from 'botocore.utils'
#440 opened by nakajiak - 0
Support AWS Canada (Calgary) Region
#441 opened by nakajiak - 0
update pandas sdk to v3.7.1
#442 opened by nakajiak - 0
- 0
Issues Ingesting VPC Flow Logs into OpenSearch SIEM with AWS Secure Environment Accelerator
#435 opened by zahirktk78 - 1
Create Detection Rule with Custom Log Type
#433 opened by khairulhabibataws - 1
Cloudtrailのログを取り込む際、HIDDEN_DUE_TO_SECURITY_REASONSという文字列で秘匿化処理がかかったフィールドが混じったログの取り込みが失敗する
#431 opened by tmat-s - 7
Invalid regex pattern of alb
#415 opened by mrobinson1022 - 0
- 4
lambda es-loader datetime.fromisoformat does not work with most ISO strings
#422 opened by PascalArevalo - 0
Enhance error handling for SQS
#424 opened by nakajiak - 0
Log exporter for PostgreSQL
#425 opened by nakajiak - 0
Parsing error for source port in linux log
#426 opened by nakajiak - 4
Need help with showing RDS logs
#416 opened by apseftis86 - 0
- 0
update pandas sdk to v3.4.0
#420 opened by nakajiak - 1
Open VPN Logs
#414 opened by redxking - 6
AWS Cloudtrail parsing failure
#412 opened by alemairebe - 1
- 0
Support OpenSearch 2.9
#409 opened by nakajiak - 0
support for nginx web server
#408 opened by nakajiak - 0
X-Forwarded-For enrichment
#407 opened by nakajiak - 0
Support for Apache Web Server
#405 opened by nakajiak - 0
support for Multi-AZ with Standby
#403 opened by nakajiak - 0
EC2 linux logs exporter
#404 opened by nakajiak - 0
dependency issue of ExecCustomResourceValidator
#406 opened by nakajiak