Content Packs for Cisco ISE?
Anyone aware of content packs for Cisco ISE Logs? I found some extractors but they are pretty old and certainly not complete - dubsout/graylog-cisco-ise: Cisco ISE Extractors for Graylog (github.com)
Also I read that using extractors is not the recommended approach anymore. So what I am looking for is Pipeline rules and maybe some dashboards.
I have found a big collection for Elastic Search here: integrations/packages/cisco_ise at main · elastic/integrations (github.com)
They are also talking abount pipelines but I assume it’s not the same concept?
Help?