4 ms·
Show HN: SIEMatic, a fair-sourced observability and security platform
- tmpsvc2695f5 2mo ago[dead]
- ilovetux 2mo agoAuthor here: Thanks for the upvotes! I built this so I could have an analytics, observability and security stack in my back pocket. Individuals, nonprofit and educational users are licensed for production use. Commercial institutions must obtain a commercial license before production use. Have any questions, feel free to ask.
- vetrom 2mo agoWhat makes this compelling over actual OSS stacks plus say Bro or some other IDS?
- ilovetux 2mo agoFirst, I would like to preface that this is alpha and should not replace anything in prod at the moment. What I like about how SIEMatic is built: * Django (personal familiarity) * Agent, Indexer, crawlers and web all share a codebase with separate settings * Search language is built around django orm, built-in jinja2 and ast.literal_eval makes it very versatile, I will be writing some tutorials soon * search commands designed to handle dataframes, Django Querysets and records (lists of dicts) with predictable conversion between them (you can filter early in you search pipeline) * from local on sqlite (rundev command) to distributed on postgres with scaling/tuning tips * comes out of the box ready to monitor your host and provide dashboards and savedsearches * crawlers handle data retention, alerting, summary event generation and more There's a bunch more, but again, this is alpha software.
- moustache_hn 2mo ago[dead]
- junhoeku 2mo agoNice work. Any plans to support OpenSearch or ClickHouse as backends in the future?
- mbirth 2mo agoSomeone is a fan of SIEMENS SIMATIC PLCs, it seems.
- lschueller 2mo agoWouldn't be super surprised if their ip lawyers already sent a legal title about trademark violations... Some big companies are very fast in tracking such similarities and enforce 800 to 2000 in restitution per violation.
- redrove 2mo agoIs there a screenshot and a feature matrix of some sort? I couldn’t find on the docs site and I don’t understand what this tool is capable of, even though I’m familiar with SIEM as a general concept.