You
MUST register through eventbrite to gain access to this session (Day 2).
Zeek, and Splunk, and Alertus, oh My - Brian AllenSummary: Learn how to find useful information at the intersection of Zeek, Splunk, and Alertus logs
Abstract: WashU has a communication tool called Alertus which is used to share info with every user on campus during an emergency. The Alertus clients are very chatty and include a lot of useful information when they phone home. Zeek sees this, so we looked for ways to use that data in Splunk. We'll look at some ways we added Alertus user data to Splunk searches to track down machines on campus.
Slack Channel for this session - #vzw-day2-talk9-zeek-splunk-and-alertus
Haven't joined the Zeek Slack space yet you can do so at:
https://join.slack.com/t/zeekorg/shared_invite/zt-cgz9wa7p-BXihgVtZlmnRfHZXmUltZQLink to Session Survey - https://forms.gle/aFCTXniakuJGi7YN9