Architecture Guide - V1D1AN/S1EM Wiki

Architecture

The architecture of access:

Archi

The architecture of logcollector:

Beats:

Beats

Syslog:

Syslog-ng

The architecture of network capture:

Architecture with Suricata with Arkime:

Suricata

Architecture with Zeek:

Zeek

The architecture of detection:

20210518_s1em_archi--detection

The architecture of osquery:

osquery