https://github.com/bytedance/elkeid-hub

Elkeid HUB is a rule/event processing engine maintained by the Elkeid Team that supports streaming/offline (not yet supported by the community edition) data processing. The original intention is to solve complex data/event processing and external system linkage requirements through standardized rules.

https://github.com/bytedance/elkeid-hub

Science Score: 13.0%

This score indicates how likely this project is to be science-related based on various indicators:

  • CITATION.cff file
  • codemeta.json file
    Found codemeta.json file
  • .zenodo.json file
  • DOI references
  • Academic publication links
  • Academic email domains
  • Institutional organization owner
  • JOSS paper metadata
  • Scientific vocabulary similarity
    Low similarity (8.2%) to scientific vocabulary

Keywords

event-engine rule-engine ruleengine soar stream-processing
Last synced: 5 months ago · JSON representation

Repository

Elkeid HUB is a rule/event processing engine maintained by the Elkeid Team that supports streaming/offline (not yet supported by the community edition) data processing. The original intention is to solve complex data/event processing and external system linkage requirements through standardized rules.

Basic Info
Statistics
  • Stars: 97
  • Watchers: 8
  • Forks: 25
  • Open Issues: 5
  • Releases: 2
Topics
event-engine rule-engine ruleengine soar stream-processing
Created about 4 years ago · Last pushed almost 3 years ago
Metadata Files
Readme License

README-zh_CN.md

English | 简体中文

Elkeid HUB

Elkeid HUB 是一款由 Elkeid Team 维护的规则/事件处理引擎,支持流式/离线(社区版尚未支持)数据处理。 初衷是通过标准化的抽象语法/规则来解决复杂的数据/事件处理与外部系统联动需求。

Core Components

  • INPUT 数据输入层,社区版仅支持Kafka
  • RULEENGINE/RULESET 对数据进行检测/外部数据联动/数据处理的核心组件
  • OUTPUT 数据输出层,社区版仅支持Kafka/ES
  • SMITH_DSL 用来描述数据流转关系

Application Scenarios

  • Simple HIDS

  • IDS Like Scenarios

  • Multiple input and output scenarios

Advantages

  • 高性能
  • 依赖极少
  • 支持复杂数据处理
  • 插件支持
  • 支持有状态逻辑
  • 支持外部系统/数据联动

Elkeid Internal Best Practices

  • 使用 Elkeid HUB 处理 Elkeid HIDS/RASP/Sandbox/K8s auditing 等原始数据,TPS 1.2亿条+/秒,HUB 调度实例 6000+

Elkeid-HUB Function List

| Ability List | Elkeid Community Edition | Elkeid Enterprise Edition | | ---------------- | ------------------------ | ------------------------- | | 流式数据处理 | :whitecheckmark: | :whitecheckmark: | | 数据输入输出能力 | :whitecheckmark: | :whitecheckmark: | | 完整前端支持 | :whitecheckmark: | :whitecheckmark: | | 监控能力 | :whitecheckmark: | :whitecheckmark: | | 插件支持 | :whitecheckmark: | :whitecheckmark: | | Debug支持 | :whitecheckmark: | :whitecheckmark: | | 离线数据处理 | :ngman: | :whitecheckmark: | | 持久化能力 | :ngman: | :whitecheckmark: | | Workspace | :ngman: | :whitecheckmark: | | 集群模式 | :ngman: | :whitecheckmark: | | 在线升级策略 | :ngman: | :whitecheck_mark: |

Front-end Display (Community Edition)

Overview

Edit Rule

Edit HUB Project

Edit HUB Python Plugin

Submission Rules

Getting Started

Elkeid HUB Handbook

Handbook

Demo Config

Demo

Elkeid HIDS Rule and Project (Just Example)

Elkeid Project

(Need to use with Elkeid)

LICENSE (Not Business Friendly)

LICENSE

Contact us && Cooperation

Owner

  • Name: Bytedance Inc.
  • Login: bytedance
  • Kind: organization
  • Location: Singapore

GitHub Events

Total
  • Issues event: 1
  • Watch event: 9
  • Fork event: 1
Last Year
  • Issues event: 1
  • Watch event: 9
  • Fork event: 1

Issues and Pull Requests

Last synced: 6 months ago

All Time
  • Total issues: 13
  • Total pull requests: 7
  • Average time to close issues: about 1 month
  • Average time to close pull requests: about 2 months
  • Total issue authors: 8
  • Total pull request authors: 4
  • Average comments per issue: 2.31
  • Average comments per pull request: 0.0
  • Merged pull requests: 6
  • Bot issues: 0
  • Bot pull requests: 0
Past Year
  • Issues: 1
  • Pull requests: 0
  • Average time to close issues: N/A
  • Average time to close pull requests: N/A
  • Issue authors: 1
  • Pull request authors: 0
  • Average comments per issue: 0.0
  • Average comments per pull request: 0
  • Merged pull requests: 0
  • Bot issues: 0
  • Bot pull requests: 0
Top Authors
Issue Authors
  • 0xlwoe21k (4)
  • wcc526 (3)
  • crazyydevil (1)
  • gdianq (1)
  • yumianxiaofeilongya (1)
  • huang99882008 (1)
  • songyao199681 (1)
  • pwddd (1)
Pull Request Authors
  • UgOrange (2)
  • AlkenePan (2)
  • hugebomb (2)
  • wcc526 (1)
Top Labels
Issue Labels
Pull Request Labels

Packages

  • Total packages: 2
  • Total downloads: unknown
  • Total dependent packages: 0
    (may contain duplicates)
  • Total dependent repositories: 0
    (may contain duplicates)
  • Total versions: 2
proxy.golang.org: github.com/bytedance/elkeid-hub
  • Versions: 1
  • Dependent Packages: 0
  • Dependent Repositories: 0
Rankings
Dependent packages count: 7.0%
Average: 8.2%
Dependent repos count: 9.3%
Last synced: 6 months ago
proxy.golang.org: github.com/bytedance/Elkeid-HUB
  • Versions: 1
  • Dependent Packages: 0
  • Dependent Repositories: 0
Rankings
Dependent packages count: 7.0%
Average: 8.2%
Dependent repos count: 9.3%
Last synced: 6 months ago