Configuring an Output with LimaCharlie
In this video we demonstrate how to configure an Output in LimaCharlie to send your telemetry anywhere.
LimaCharlie users can relay their data anywhere they want for longer term storage and analysis. Where that data is sent depends on which Outputs are activated. You can have as many Output modules active as you want. For example you can send varying levels of data to multiple syslog destinations using the Syslog Output module and then send additional data to some cold storage over an Scp Output module.
Output is split between four categories: "event", "detect", "audit" and "deployment". Selecting a Stream when creating an Output will select the relevant type of data to flow through it.
Exact configuration possibilities in the Output section: https://doc.limacharlie.io/docs/documentation/ZG9jOjE5MzExMTY-output-modules
General Links
Website: https://limacharlie.io
Documentation: https://doc.limacharlie.io/
Free Education: https://edu.limacharlie.io/
Course Playlists
Basic Detection & Response: https://www.youtube.com/playlist
Advanced Detection & Response: https://www.youtube.com/playlist
Secure Access Service Edge: https://www.youtube.com/playlist
Leveraging Community Resources: https://www.youtube.com/playlist
Setting up An MSSP: https://www.youtube.com/playlist
Using the CLI & SDK: https://www.youtube.com/playlist
Ingesting Log Files & Artifacts: https://www.youtube.com/playlist
Zeek Network Monitoring: https://www.youtube.com/playlist
Incident Response: https://www.youtube.com/playlist
Real-time Windows Event Logs: https://www.youtube.com/playlist
Responding to HAFNIUM: https://www.youtube.com/playlist
The Add-on Marketplace: https://www.youtube.com/playlist
Social Media
Community Slack Channel: https://slack.limacharlie.io/
Twitter: https://twitter.com/limacharlieio
Reddit: https://www.reddit.com/r/limacharlieio/
LinkedIn: https://www.linkedin.com/showcase/limacharlieio/
YouTube: http://youtube.com/limacharlieio