Re: Use case question

2019-03-04 Thread Michael Miklavcic
Sanket, you should definitely be able to use Metron for what you've described. Here are some examples that you might find useful for comparison - https://github.com/apache/metron/tree/master/use-cases Best, Mike On Mon, Mar 4, 2019 at 5:24 AM Sanket Sharma wrote: > Hi Simon, > > Thank you for

Re: Use case question

2019-03-04 Thread Simon Elliston Ball
Hi Sanket, This is certainly an interesting case. Metron is deliberately designed for flexibility in terms of ingest and schema, so that non-network data sources and use cases can be accommodated. The one caveat I would suggest is that the Metron pipeline is designed for analytics and detection,

Re: Use case question

2019-03-04 Thread Hammad
Following!! On Mon, Mar 4, 2019 at 2:29 PM Sanket Sharma wrote: > > > Hi, > > I've been looking at metron for a few days now and I have a unique use - > thought of asking the experts if it makes sense to use metron in this > scenario. > > My understanding of the project so far is that its a

Use case question

2019-03-04 Thread Sanket Sharma
Hi, I've been looking at metron for a few days now and I have a unique use - thought of asking the experts if it makes sense to use metron in this scenario. My understanding of the project so far is that its a framework built for analyzing cybersecurity threats. This includes analyzing IP