Alert Wizard plugin for Graylog 3.1

Hello,

As I said in Alert Wizard plugin for Graylog to manage the alert rules - #4 by frantz there is no Wizard version compatible with Graylog v3.1.
I would recommend you to upgrade Graylog to v4.2 and take the lastest Wizard version.
We’ll soon release a Wizard version compatible with Graylog 4.3.

To answer your first question it’s not related with Graylog Enterprise, it’s an open source plugin developped by Airbus CyberSecurity.
This plugin was initially developped because it was a pain to create a correlation rule in Graylog, first you had to create a Stream to filter logs (you couldn’t set a search query directly in the rule), then you had to create an event definition and finally a notification. Thanks to this plugin you can configure main things on one page and it creates everything in backend.
Nowadays Graylog has really been improved on these points and has its own wizard. But this plugin is still useful.

2 Likes