Virtualization Technology News and Information
Corelight Delivers Integration with Elasticsearch for More Powerful Incident Response and Threat Hunting with the Elastic Stack

Corelight, provider of the most powerful network visibility solution for cybersecurity, announced product integration with Elasticsearch, the world's most popular distributed and real time search engine. Now organizations can import Corelight network logs directly to Elasticsearch, which makes the Elastic Stack a much more powerful platform for incident response and threat hunting. Corelight will showcase the Elasticsearch integration at Elastic{ON} in booth B2 and during a presentation at the conference's Spotlight Theater at 10:00 a.m. PT on Wednesday, February 28.

"As a network traffic analysis solution, Corelight is focused on turning high-volume network traffic into high-fidelity data for incident response, intrusion detection, and forensics," said Vince Stoffer, Director of Customer Solutions at Corelight. "Making it easy for companies adopting Elasticsearch to ingest Bro logs is really important. Whether they ingest data into Elasticsearch directly, or into Logstash, the depth and granularity that Bro provides about network traffic can be a real game changer for cybersecurity forensics."

The integration is part of Corelight's latest software release, version 1.13 and delivers native integration with the Elasticsearch API, offering a streamlined Corelight log export option that gives customers the choice to export directly to Elasticsearch or into Logstash.

This follows last month's news that Corelight reported strong growth in 2017 with 10 of the Fortune 200 as customers and was included as a Vendor to Watch in Gartner's January 2018 Magic Quadrant for Intrusion Detection and Prevention.

Published Thursday, February 22, 2018 7:16 AM by David Marshall
Filed under: ,
There are no comments for this post.
To post a comment, you must be a registered user. Registration is free and easy! Sign up now!
<February 2018>