IVRE-DRUNK-Logstash-Parser
This IVRE parser caters for only Nmap scans that you would like to display on your ELK stack.
Link to IVRE - https://ivre.rocks/
The logstash parser will enable the processing of IVRE json logs.
- Update and upgrade linux distribution
- Install Java 8
- Install Logstash - https://www.elastic.co/products/logstash
- Add the parser to your directory /etc/logsgtash/conf.d/ and run logstash