Home

Awesome

English | 简体中文

Elkeid HUB

Elkeid HUB is a rule/event processing engine maintained by the Elkeid Team that supports streaming/offline (not yet supported by the community edition) data processing. The original intention is to solve complex data/event processing and external system linkage requirements through standardized rules.

Core Components

Application Scenarios

Advantage

Elkeid Internal Best Practices

Elkeid-HUB Function List

Ability ListElkeid Community EditionElkeid Enterprise Edition
Streaming data processing:white_check_mark::white_check_mark:
Data input, output capability:white_check_mark::white_check_mark:
Full frontend support:white_check_mark::white_check_mark:
Monitoring capability:white_check_mark::white_check_mark:
Plugin support:white_check_mark::white_check_mark:
Debug support:white_check_mark::white_check_mark:
Offline data processing:ng_man::white_check_mark:
Data Persistence capability:ng_man::white_check_mark:
Workspace:ng_man::white_check_mark:
Cluster mode:ng_man::white_check_mark:
Online upgrade strategy:ng_man::white_check_mark:

Front-end Display (Community Edition)

Overview <img src="docs/png/1_en.png" style="float:left;"/>

Edit Rule <img src="docs/png/2_en.png" style="float:left;"/>

Edit HUB Project <img src="docs/png/3_en.png" style="float:left;"/>

Edit HUB Python Plugin <img src="docs/png/4_en.png" style="float:left;"/>

Submission Rules <img src="docs/png/5_en.png" style="float:left;"/>

Getting Started

Elkeid HUB Handbook (Chinese Version Only)

Handbook

Demo Config

Demo

Elkeid HIDS Rule and Project (Just Example)

Elkeid Project

(Need to use with Elkeid)

LICENSE (Not Business Friendly)

LICENSE

Contact us && Cooperation

<img src="./Lark.png" width="40%" style="float:left;"/>