<div dir="ltr"><div><div><div>Hi,<br><br></div>This was part of my talk last week at a conference, but I also made a blog from it: <a href="https://www.balabit.com/blog/how-to-create-heat-maps-to-show-whos-trying-to-connect-your-router/">https://www.balabit.com/blog/how-to-create-heat-maps-to-show-whos-trying-to-connect-your-router/</a><br></div>You can parse iptables logs (or other firewalls using key=value format) using in syslog-ng using the key=value and GeoIP parsers, store it to Elasticsearch and display the results in Kibana.<br></div><div></div><div><br></div>Bye,<br><div><div><div><br clear="all"><div><div><div class="gmail_signature"><div dir="ltr"><div>Peter Czanik (CzP) <<a href="mailto:peter.czanik@balabit.com" target="_blank">peter.czanik@balabit.com</a>><br>Balabit / syslog-ng upstream<br><a href="https://www.balabit.com/blog/author/peterczanik/" target="_blank">https://www.balabit.com/blog/author/peterczanik/</a><br><a href="https://twitter.com/PCzanik" target="_blank">https://twitter.com/PCzanik</a></div></div></div></div>
</div></div></div></div></div>