Security Onion Live Cd Page
Uses Suricata for signature-based detection and Zeek for rich protocol metadata.
Security Onion functions as a "Swiss Army knife" for defenders by bundling several best-of-breed open-source tools: Security Onion Live Cd
Built on the Elastic Stack (Elasticsearch, Logstash, Kibana) to store and visualize massive amounts of security data. Quick Start Guide Uses Suricata for signature-based detection and Zeek for
Features the Security Onion Console (SOC) , which provides built-in dashboards, threat-hunting interfaces, and case management. which provides built-in dashboards
You can boot the system and immediately start sniffing traffic on local interfaces (like eth0 ) using tools like Snort or Suricata .

