Wednesday, January 13, 2021

Elastiflow Install

reference from https://edennington.wordpress.com/2020/02/28/installing-elastiflow/ Turn off firewalld & disable selinux sudo yum -y install java-openjdk-devel java-openjdk tcpdump net-tools yum-utils epel-release iftop sudo rpm --import http://packages.elastic.co/GPG-KEY-elasticsearch cat < Saved objects page and import downloaded json file. send netflow from network device using udp port 2055 and you should see flow data.