Hacker News new | ask | show | jobs
by Forbo 1482 days ago
I'd say just spin up a SecurityOnion stack. It's essentially a "SOC-in-a-box". I had a proof of concept machine spun up and generating alerts off of replayed PCAPs in a day.