/documentation

Documentation about the project

uSIEM

THis repository contains documentation about the uSIEM project.

LOG parsers

See a complete list of the available parsers: Parser list

Alerting system

See how to design SIEM rules, how to test them and how to implement a Rule engine: Alerting system

Data schema

See how uSIEM follows the Elastic Common Schemma: Alerting system

Testing

uSIEM helps testing rules, parsers and parts of the SIEM: