{"repo":"brexhq/substation","free":true,"listed":false,"github":"https://github.com/brexhq/substation","clone":"git clone https://github.com/brexhq/substation.git","description":"Substation is a toolkit for routing, normalizing, and enriching security event and audit logs.","language":"Go","stars":403,"topics":["aws","security","monitoring","automation","logging","observability"],"license":"MIT","category":"analytics","readme_excerpt":"Substation Substation is a toolkit for routing, normalizing, and enriching security event and audit logs. [Releases][releases]&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp;[Documentation][docs]&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp;[Adopters][adopters]&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp;[Announcement (2022)][announcement]&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp;[v1.0 Release (2024)][v1 release] Quickstart Want to see a demo before diving into the documentation? Run this command: At a Glance Substation is inspired by data pipeline systems like Logstash and Fluentd, but is built for modern security teams: - Extensible Data Processing : Build data processing pipeline systems and microservices using out-of-the-box applications and 100+ data transformation functions, or create your own written in Go. - Route Data Across the Cloud : Conditionally route data to, from, and between AWS cloud services, including S3, Kinesis, SQS, and Lambda, or to any HTTP endpoint. - Bring Your Own Schema : Format, normalize, and enrich event logs to comply with the Elastic Common Schema (ECS), Open Cybersecurity Schema Framework (OCSF), or any other schema. - Unlimited Data Enrichment : Use external APIs to enrich event logs affordably and at scale with enterprise and threat intelligence, or build a microservice that reduces spend in expensive security APIs. - No Servers, No Maintenance : Deploys as a serverless application in your AWS account, launches in minutes using Terraform, and requires no maintenance after","default_branch":null,"files":null,"tree":[],"storefront":"/r/brexhq","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/brexhq/substation/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}