Announcing Graylog 5.2.8

Announcing Graylog 5.2.8 This is a bug-fix release that improves Graylog’s functionality. Please read on for information on what has changed.   Download Links DEB and RPM packages are available in our repositories Container images Graylog Open Graylog Enterprise Graylog Data Node Tarballs for manual installation Graylog Server Graylog Server…

Continue ReadingAnnouncing Graylog 5.2.8

Announcing Graylog Illuminate v5.1

Announcing Graylog Illuminate 5.1 GRAYLOG ILLUMINATE 5.1 Released: 2024-06-06   Added Symantec EDR: Symantec Endpoint Detection and Response (EDR) Content Pack (1853) Symantec Endpoint Detection and Response is used to detect advanced attacks using machine learning and global threat intelligence to minimize false positives and help ensure high levels of…

Continue ReadingAnnouncing Graylog Illuminate v5.1

Upgrade to Illuminate 5.1 for Enhanced Security Operations (Requires Graylog 6.0)

Upgrade to Illuminate 5.1 for Enhanced Security Operations (Requires Graylog 6.0)   Hey everyone! We’re thrilled to announce the release of Illuminate 5.1, our latest update to the powerful Graylog Illuminate Content Pack. This version brings game-changing new features, especially with extended coverage for Symantec Endpoint Detection and Response (EDR)…

Continue ReadingUpgrade to Illuminate 5.1 for Enhanced Security Operations (Requires Graylog 6.0)

Alert Notice: OpenSearch V2.14

Please be advised, Graylog is suggesting not to upgrade your OpenSearch Cluster to version 2.14. There are two issues in OpenSearch that will cause two specific issues: 1. Sporatic concurrent_modification_exeptions during query (link) 2. Additional aggregation in search request is changing results. (link) We are working with the OpenSearch Team…

Continue ReadingAlert Notice: OpenSearch V2.14

Why API Discovery Is Critical to Security

For Star Trek fans, space may be the final frontier, but in security, discovering Application Programming Interfaces (APIs) could be the technology equivalent. In the iconic episode “The Trouble with Tribbles,” the legendary starship Enterprise discovers a space station that becomes overwhelmed by little fluffy, purring, rapidly reproducing creatures called…

Continue ReadingWhy API Discovery Is Critical to Security

Top 3 scenarios in which managing multiple clusters with one OpenSearch Dashboards instance is a lifesaver

OpenSearch Dashboards, the visualization tool for your OpenSearch data, offers the multiple data sources feature. This feature enables you to consolidate and visualize data from various OpenSearch clusters within a unified dashboard. By integrating disparate sources into a single view, the multiple data sources feature streamlines data analysis workflows, eliminates…

Continue ReadingTop 3 scenarios in which managing multiple clusters with one OpenSearch Dashboards instance is a lifesaver

Improving ease of use in OpenSearch Dashboards with Vega visualizations

Improving ease of use in OpenSearch Dashboards with Vega visualizations When we offer users a clunky dashboard interface, we increase usability pain points and user frustration. Improving the usability of software requires a sharp focus on user experience. Moreover, a poor interface restricts customizability, a prized requirement by high-code users.…

Continue ReadingImproving ease of use in OpenSearch Dashboards with Vega visualizations

Developer guide: Integrating multiple data sources using OpenSearch Dashboards and plugins

OpenSearch introduced support for multiple data sources in version 2.4, allowing users to explore, visualize, and manage data from self-managed clusters and Amazon OpenSearch Service. In version 2.14, OpenSearch Dashboards plugins have been integrated to support multiple data sources. Users can now access data from remote clusters within OpenSearch Dashboards…

Continue ReadingDeveloper guide: Integrating multiple data sources using OpenSearch Dashboards and plugins