Configuring an Output with LimaCharlie

Configuring an Output with LimaCharlie

In this video we demonstrate how to configure an Output in LimaCharlie to send your telemetry anywhere.

LimaCharlie users can relay their data anywhere they want for longer term storage and analysis. Where that data is sent depends on which Outputs are activated. You can have as many Output modules active as you want. For example you can send varying levels of data to multiple syslog destinations using the Syslog Output module and then send additional data to some cold storage over an Scp Output module.

Output is split between four categories: "event", "detect", "audit" and "deployment". Selecting a Stream when creating an Output will select the relevant type of data to flow through it.

Exact configuration possibilities in the Output section: https://doc.limacharlie.io/docs/documentation/ZG9jOjE5MzExMTY-output-modules

General Links

Website: https://limacharlie.io

Documentation: https://doc.limacharlie.io/

Free Education: https://edu.limacharlie.io/

Course Playlists

Basic Detection & Response: https://www.youtube.com/playlist

Advanced Detection & Response: https://www.youtube.com/playlist

Secure Access Service Edge: https://www.youtube.com/playlist

Leveraging Community Resources: https://www.youtube.com/playlist

Setting up An MSSP: https://www.youtube.com/playlist

Using the CLI & SDK: https://www.youtube.com/playlist

Ingesting Log Files & Artifacts: https://www.youtube.com/playlist

Zeek Network Monitoring: https://www.youtube.com/playlist

Incident Response: https://www.youtube.com/playlist

Real-time Windows Event Logs: https://www.youtube.com/playlist

Responding to HAFNIUM: https://www.youtube.com/playlist

The Add-on Marketplace: https://www.youtube.com/playlist

Social Media

Community Slack Channel: https://slack.limacharlie.io/

Twitter: https://twitter.com/limacharlieio

Reddit: https://www.reddit.com/r/limacharlieio/

LinkedIn: https://www.linkedin.com/showcase/limacharlieio/

YouTube: http://youtube.com/limacharlieio

Github: https://github.com/refractionPOINT