ELK Dashboard for Pihole Logs, (Sun, Dec 29th)
In my last Pihole Diary, I shared a Pihole parser to collect its logs and stored them into Elastic. In this diary, I’m sharing a dashboard to visualize the Pihole DNS data. Here are some of the output from the dashboard.
Pihole Overall
Pihole Regex List Match
This is the output from the Blacklist for Regex and Wildcard blocking
Pihole Gravity List Match
This is the output from the Blocklists generated by Pi-hole Gravity
The JSON dashboard file can be downloaded here.
[1] https://isc.sans.edu/diary/25582
[2] https://handlers.sans.edu/gbruneau/elk/pihole.conf
[3] https://handlers.sans.edu/gbruneau/elk/pihole_graphs.ndjson
[4] https://www.elastic.co/
———–
Guy Bruneau IPSS Inc.
My Handler Page
Twitter: GuyBruneau
gbruneau at isc dot sans dot edu
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Reposted from SANS. View original.
Posted in: SANS
Leave a Comment (0) ↓