You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
devilman85 opened this issue
Jan 20, 2025
· 1 comment
Labels
captureRelating to pcap-capture containerdockerRelating to docker and docker-compose as used by MalcolmsensorFor issues dealing with the Hedgehog OS capture sensor
I hope this message finds you well. I would like to propose the idea of creating a Dockerized version of Hedgehog Linux as part of the Malcolm ecosystem.
This would provide several advantages:
Simplified deployment: Users could quickly deploy Hedgehog Linux alongside Malcolm without needing separate hardware or complex configurations.
Improved compatibility: A Docker container would ensure consistent environments, making it easier to integrate Hedgehog Linux with Malcolm.
Enhanced flexibility: Users could scale and test Hedgehog Linux instances as needed, taking advantage of the modularity of Docker.
Given the growing importance of Hedgehog Linux in traffic analysis workflows, I believe this addition could greatly enhance the overall user experience for the Malcolm community.
Thank you for considering this suggestion, and I would be happy to provide more details if needed.
Best regards
The text was updated successfully, but these errors were encountered:
Another configuration for monitoring local network interfaces is to use the hedgehog run profile. During Malcolm configuration users are prompted “Run with Malcolm (all containers) or Hedgehog (capture only) profile?” Docker Compose can use profiles to selectively start services. While the malcolm run profile runs all of Malcolm’s containers (OpenSearch, Dashboards, LogStash, etc.), the hedgehog profile runs only the containers necessary for traffic capture.
When configuring the hedgehog profile, users must provide connection details for another Malcolm instance to which to forward its network traffic logs.
mmguero
added
docker
Relating to docker and docker-compose as used by Malcolm
sensor
For issues dealing with the Hedgehog OS capture sensor
capture
Relating to pcap-capture container
and removed
enhancement
New feature or request
labels
Jan 20, 2025
captureRelating to pcap-capture containerdockerRelating to docker and docker-compose as used by MalcolmsensorFor issues dealing with the Hedgehog OS capture sensor
I hope this message finds you well. I would like to propose the idea of creating a Dockerized version of Hedgehog Linux as part of the Malcolm ecosystem.
This would provide several advantages:
Simplified deployment: Users could quickly deploy Hedgehog Linux alongside Malcolm without needing separate hardware or complex configurations.
Improved compatibility: A Docker container would ensure consistent environments, making it easier to integrate Hedgehog Linux with Malcolm.
Enhanced flexibility: Users could scale and test Hedgehog Linux instances as needed, taking advantage of the modularity of Docker.
Given the growing importance of Hedgehog Linux in traffic analysis workflows, I believe this addition could greatly enhance the overall user experience for the Malcolm community.
Thank you for considering this suggestion, and I would be happy to provide more details if needed.
Best regards
The text was updated successfully, but these errors were encountered: