IVRE-DRUNK-Logstash-Parser

This IVRE parser caters for only Nmap scans that you would like to display on your ELK stack. Link to IVRE - https://ivre.rocks/

The logstash parser will enable the processing of IVRE json logs.

  1. Update and upgrade linux distribution
  2. Install Java 8
  3. Install Logstash - https://www.elastic.co/products/logstash
  4. Add the parser to your directory /etc/logsgtash/conf.d/ and run logstash